AI From Scratch/Phase 18/Lesson 25/~45 minutes

EchoLeak and the Emergence of CVEs for AI

Learn

CVE-2025-32711 "EchoLeak" (CVSS 9.3) was the first publicly documented zero-click prompt injection in a production LLM system (Microsoft 365 Copilot). Discovered by Aim Labs (Aim Security), disclosed to MSRC, patched via server-side update...

Loading lesson page...