The AI Insider Threat: EchoLeak and the Rise of Zero-Click Exploits episode artwork

EPISODE · Jun 24, 2025 · 13 MIN

The AI Insider Threat: EchoLeak and the Rise of Zero-Click Exploits

from Cyberside Chats: Cybersecurity Insights from the Experts · host Chatcyberside

Can your AI assistant become a silent data leak? In this episode of Cyberside Chats, Sherri Davidoff and Matt Durrin break down EchoLeak, a zero-click exploit in Microsoft 365 Copilot that shows how attackers can manipulate AI systems using nothing more than an email. No clicks. No downloads. Just a cleverly crafted message that turns your AI into an unintentional insider threat.  They also share a real-world discovery from LMG Security’s pen testing team: how prompt injection was used to extract system prompts and override behavior in a live web application. With examples ranging from corporate chatbots to real-world misfires at Samsung and Chevrolet, this episode unpacks what happens when AI is left untested—and why your security strategy must adapt.    Key Takeaways  Limit and review the data sources your LLM can access—ensure it doesn’t blindly ingest untrusted content like inbound email, shared docs, or web links.  Audit AI integrations for prompt injection risks—treat language inputs like code and include them in standard threat models.  Add prompt injection testing to every web app and email flow assessment, even if you’re using trusted APIs or cloud-hosted models.  Red-team your LLM tools using subtle, natural-sounding prompts—not just obvious attack phrases.  Monitor and restrict outbound links from AI-generated content, and validate any use of CSP-approved domains like Microsoft Teams.    Resources  EchoLeak technical breakdown by Aim Security  LMG Security Blog: Prompt Injection in Web Apps  Chevrolet chatbot tricked into $1 car deal  Microsoft 365 Copilot Overview  #EchoLeak #Cybersecurity #Cyberaware #CISO #Microsoft #Microsoft365 #Copilot #AI #GenAI #AIsecurity #RiskManagement

Can your AI assistant become a silent data leak? In this episode of Cyberside Chats, Sherri Davidoff and Matt Durrin break down EchoLeak, a zero-click exploit in Microsoft 365 Copilot that shows how attackers can manipulate AI systems using nothing more than an email. No clicks. No downloads. Just a cleverly crafted message that turns your AI into an unintentional insider threat.  They also share a real-world discovery from LMG Security’s pen testing team: how prompt injection was used to extract system prompts and override behavior in a live web application. With examples ranging from corporate chatbots to real-world misfires at Samsung and Chevrolet, this episode unpacks what happens when AI is left untested—and why your security strategy must adapt.    Key Takeaways  Limit and review the data sources your LLM can access—ensure it doesn’t blindly ingest untrusted content like inbound email, shared docs, or web links.  Audit AI integrations for prompt injection risks—treat language inputs like code and include them in standard threat models.  Add prompt injection testing to every web app and email flow assessment, even if you’re using trusted APIs or cloud-hosted models.  Red-team your LLM tools using subtle, natural-sounding prompts—not just obvious attack phrases.  Monitor and restrict outbound links from AI-generated content, and validate any use of CSP-approved domains like Microsoft Teams.    Resources  EchoLeak technical breakdown by Aim Security  LMG Security Blog: Prompt Injection in Web Apps  Chevrolet chatbot tricked into $1 car deal  Microsoft 365 Copilot Overview  #EchoLeak #Cybersecurity #Cyberaware #CISO #Microsoft #Microsoft365 #Copilot #AI #GenAI #AIsecurity #RiskManagement

NOW PLAYING

The AI Insider Threat: EchoLeak and the Rise of Zero-Click Exploits

0:00 13:54

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

Frequently Asked Questions

How long is this episode of Cyberside Chats: Cybersecurity Insights from the Experts?

This episode is 13 minutes long.

When was this Cyberside Chats: Cybersecurity Insights from the Experts episode published?

This episode was published on June 24, 2025.

What is this episode about?

Can your AI assistant become a silent data leak? In this episode of Cyberside Chats, Sherri Davidoff and Matt Durrin break down EchoLeak, a zero-click exploit in Microsoft 365 Copilot that shows how attackers can manipulate AI systems using nothing...

Is there a transcript available for this episode?

Yes, a full transcript is available for this episode. You can read the complete transcript on the episode page.

Can I download this Cyberside Chats: Cybersecurity Insights from the Experts episode?

Yes, you can download this episode by clicking the download button on the episode player, or subscribe to the podcast in your preferred podcast app for automatic downloads.
URL copied to clipboard!