mobile

Critical server-side vulnerability in Microsoft Copilot Studio gives illegal access to internal infrastructure

The attack technique involves redirecting requests to the IMDS, enabling the retrieval of managed identity access tokens.

https://www.techradar.com/pro/critical-server-side-vulnerability-in-microsoft-copilot-studio-gives-illegal-access-to-internal-infrastructure