Coding assistants
Model-based tools that write, review or run code inside editors, terminals and pipelines.
- All items
- 160
- Last 90 days
- 44
- Change
- -8%vs 48 before
Items per month
| Month | Items |
|---|---|
| May 2025 | 0 |
| Jun 2025 | 1 |
| Jul 2025 | 0 |
| Aug 2025 | 4 |
| Sep 2025 | 2 |
| Oct 2025 | 3 |
| Nov 2025 | 4 |
| Dec 2025 | 4 |
| Jan 2026 | 3 |
| Feb 2026 | 17 |
| Mar 2026 | 16 |
| Apr 2026 | 12 |
| May 2026 | 16 |
| Jun 2026 | 18 |
| Jul 2026 | 19 |
| Aug 2026 | 13 |
| Sep 2026 | 14 |
| Oct 2026 | 3 |
81 items
Microsoft is giving Copilot more control over Windows and your files
Oct 7, 2026InfoNewsIndustryPrivacyAt a Windows and Surface event, Microsoft showed an upgraded Copilot that can access local files on a PC and take actions across the operating system. The feature is part of what Microsoft calls "Hybrid Intelligence," in which apps rely on a mix of local and cloud AI models. A stage demo had Jacob Andreou, Microsoft's EVP of Copilot, asking the Autopilot tool to help file taxes.
The Verge (AI)Encrypted instructions trick Copilot CLI into spilling developer secrets
Oct 7, 2026MediumNewsSecuritySafetyAdversa AI researchers described Cryptographic Context Injection (CCI), a technique that hides malicious instructions inside encrypted content so GitHub Copilot CLI treats them as trusted context. In a demonstration, Copilot read a ".env.prod" file and sent its contents to an attacker-controlled endpoint in 28 seconds without confirmation. The attack requires autopilot mode and a model willing to execute the decrypted instructions, and GitHub declined to treat it as a vulnerability.
CSO OnlineGitHub Copilot CLI vulnerability: Cryptographic Context Injection steals developer secrets
Oct 6, 2026MediumNewsSecurityResearchGitHub Copilot CLI can be made to read a developer's local files and send them to an attacker from a single web page. The attack, Cryptographic Context Injection (CCI), hides instructions as ciphertext that the agent decrypts in its own shell and trusts as its own, and the researchers say one attacker-controlled URL fetched in autopilot mode was enough to exfiltrate a .env.prod file in 28 seconds.
Adversa AI BlogFrom SELECT to SYSADMIN with SQL Copilot (CVE-2026-65669)
Sep 30, 2026MediumNewsSecurityA researcher presented at BlueHat Asia 2026 in Singapore on Microsoft's Copilot in SQL Server Management Studio (SSMS). The talk covered CVE-2026-65669, a SQL Server Elevation of Privilege Vulnerability that Microsoft rated critical.
Fix: So, make sure your installations are up-to-date.
Embrace The RedMicrosoft thinks its new Copilot ‘super app’ will be as influential as Office
Sep 25, 2026InfoNewsIndustryMicrosoft is officially unveiling a redesigned Copilot app that bundles chat, coding, and agent capabilities into a single interface. The app has three tabs, Home, Code, and Autopilot, with Home combining Copilot Chat and Cowork. Microsoft is also renaming Scout, the AI personal assistant it unveiled at Build, as Autopilot.
The Verge (AI)What’s new in Microsoft Security: September 2026
Sep 24, 2026InfoNewsSecurityIndustryMicrosoft's September 2026 security update, published as a news item, describes new features across Microsoft Defender, Microsoft Security Copilot, Microsoft Purview and Microsoft Entra. Updates include AI-generated email detonation summaries, network-layer blocking of sensitive data sent to unsanctioned AI tools, expanded auto-labeling for large environments, and eDiscovery and archiving changes for Copilot-created content.
Microsoft Security BlogZ.ai disables coding assistant feature after flaw exposed enterprise code upload risk
Sep 22, 2026MediumNewsSecurityPrivacyZ.ai disabled several features of its ZCode coding assistant after a default setting was found sending users' local code repositories to Alibaba Cloud servers in China without consent. An independent blogger, Ferstar, reported that the client packaged full workspaces, including .git history and global app configs, and uploaded them to Aliyun OSS. The company removed the feature from its latest release and said it had deleted the associated cloud storage.
Fix: Z.ai disabled the repository upload mechanism, deleted the associated cloud storage infrastructure, and implemented changes in the ZCode v3.14.0 client. It also removed the Repo Wiki entry point and the associated generation workflow, and asked CAICT and NSFOCUS to conduct security assessments.
CSO OnlineMicrosoft says Copilot buttons still missing in classic Outlook
Sep 16, 2026LowNewsIndustrySecurityMicrosoft is still investigating a known issue that makes the Copilot and Copilot Chat buttons disappear in classic Outlook for some Windows users with a Copilot Chat (Basic) license or a paid M365 Copilot (Premium) account. Microsoft says the problem occurs after upgrading classic Outlook for Windows to build 20026.20182 and higher, because Outlook cannot locate the MAPI property PR_PROFILE_USER_SMTP_EMAIL_ADDRESS_W within the null profile section. Copilot remains available through Outlook on the web and the Microsoft 365 Copilot standalone app or web experience.
Fix: Temporary workaround: in classic Outlook, select File, then Options, go to Advanced, and check "Show Apps in Outlook" under "Outlook panes." Affected users can also create a new Outlook profile or use the new Outlook email client or Outlook Web Access (OWA), which Microsoft says are not affected.
BleepingComputerUpdate your firewall rules: Teams and Copilot are changing address
Sep 11, 2026InfoNewsIndustryMicrosoft is changing the destination addresses of M365 and Teams web users to copilot.cloud.microsoft and teams.cloud.microsoft, announced in MessageCenter posts MC1465764 and MC1462915. Redirects should be completed by early October, and limited Teams exceptions are possible until Dec. 31, 2026.
Fix: Microsoft advises customers to review configurations on client devices, proxies, firewalls, secure web gateways, or other enterprise network controls to confirm users can connect to the new addresses. Companies blocking the new Copilot address to keep employees off personal Microsoft accounts can use Microsoft's TenantRestrictions control instead. Companies that cannot meet the deadline should contact their account representative.
CSO OnlineMicrosoft says virtually nobody was grabbing NYT articles through its chatbot
Sep 4, 2026InfoNewsPolicyIndustryMicrosoft says in new legal filings that its Copilot rarely reproduces even full sentences from news articles and books, let alone substantive chunks that could substitute for the originals. The company is contesting copyright claims from publishers including The New York Times and book authors, and it provided 8.2 million Copilot chat logs to an expert hired by the news publishers during discovery.
The Verge (AI)Slack is launching collaborative vibe coding channels
Aug 20, 2026InfoNewsIndustrySlack is introducing dedicated Slack Code channels where teams can vibe code together with AI agents rather than switching between tools. The launch includes open, project-specific code channels with dedicated user tabs, plus features to compare code changes and preview HTML output before shipping.
The Verge (AI)Microsoft finally patches critical one-click Copilot vulnerability, almost eight months after learning of it
Aug 18, 2026MediumNewsSecuritySafetyVaronis disclosed CoSnitch, a critical flaw in the personal version of Microsoft Copilot, which chains a ?q= URL parameter and an undocumented parameter to run attacker prompts on page load with no click. The attack can exfiltrate data from connected apps such as Gmail, Drive, Calendar or OneDrive to an attacker-controlled webhook, and can poison persistent memory via web summarization. Microsoft issued a patch on Tuesday, almost eight months after Varonis reported the flaw on December 31; a partial fix had come on February 1.
Fix: Microsoft issued a patch that closes the hole, and Microsoft says customers are already protected and do not need to take any action. Microsoft says it continuously updates its guardrails against similar techniques.
CSO Online'CoSnitch' Attack Tricked Copilot into Mapping Out Architecture
Aug 18, 2026MediumNewsSecurityResearchResearchers described a "meta-hacking" technique that manipulates an AI service into revealing its own security weaknesses. The title indicates the attack, named CoSnitch, tricked Copilot into mapping out its architecture.
Dark ReadingMicrosoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps
Aug 18, 2026MediumNewsSecurityPrivacyVaronis Threat Labs disclosed three vulnerabilities in Microsoft Copilot Personal, collectively named CoSnitch, that could let a single click on a crafted link silently pull data from connected apps and the victim's Copilot session. The one-click path depends on the undocumented autorun=1 URL parameter combined with the existing q parameter, which together run an attacker-supplied prompt on page load in the victim's authenticated session. Tracked as CVE-2026-24301, the flaws affect the consumer assistant at copilot.microsoft.com, and the researchers found no evidence of in-the-wild exploitation.
Fix: Patches shipped on August 18, 2026, per the source.
The Hacker NewsWiz Red Agent Finds Its Way Into Snowflake’s Internal Jira Due to an AI-Generated GitHub Copilot “Autofix”
Aug 17, 2026MediumNewsSecurityIndustryWiz Research's Red Agent, an autonomous AI-powered security research tool, found a script injection vulnerability in snowflakedb/snowflake-connector-net through Snowflake's HackerOne program. The jira_issue.yml GitHub Actions workflow, triggered by issues opened, interpolated the attacker-controlled issue title into a shell script, letting any GitHub user run arbitrary commands on a runner by opening a crafted issue. The flaw was introduced on June 18, 2026 by PR #1218, co-authored by Copilot Autofix, and Wiz disclosed it on June 23, 2026.
Fix: Snowflake remediated the vulnerability on the same day it was disclosed, rotated the affected credential, and verified via audit logs that Wiz was the sole actor during the exposure window.
Wiz Research BlogMicrosoft’s Clippy-like Mico character is no longer the face of Copilot
Aug 13, 2026InfoNewsIndustryMicrosoft will stop showing its Mico avatar in Copilot's voice mode and move it to the Learn Live platform, where it will have more to react to, according to a Microsoft support page. Mico launched in Copilot's voice mode last October, and Microsoft AI CEO Mustafa Suleyman pitched it as a way to give the chatbot an identity.
The Verge (AI)Microsoft is combining its Copilot apps ahead of a ‘super app’
Aug 13, 2026InfoNewsIndustryMicrosoft is merging its consumer and commercial Copilot AI assistants into a single "super app" interface, starting with the Copilot and Microsoft 365 Copilot apps. Personal and work accounts will move to the unified app, which keeps the "Microsoft Copilot" name and gets a new icon.
The Verge (AI)Microsoft confirms an AI worm is propagating through Copilot and other MS apps
Jul 30, 2026MediumNewsSecuritySafetyNorwegian AI researcher Håkon Måløy published details of an AI worm that spreads through Microsoft Word and Copilot. An attacker can hide instructions in a document used as source material for Copilot-generated or Copilot-edited Word documents, where they can alter figures and copy themselves into new documents that carry the attack into other Copilot-assisted workflows. Microsoft confirmed the findings and said it has addressed them.
Fix: Microsoft says it has addressed the findings and uses a defense-in-depth strategy with safeguards that block malicious instructions at multiple points. Microsoft encourages customers to install the latest updates, use multiple layers of security protection, treat content from unknown sources with caution, and review AI-generated content before using or sharing it. Måløy reports that the core vulnerability has yet to be fixed, though Microsoft's mitigations reduce the demonstrated attack surface.
CSO OnlineCopilot worm can spread through Microsoft Word docs
Jul 30, 2026MediumNewsSecurityIndustryNorwegian AI researcher Håkon Måløy reported that an attacker can hide instructions in a Word document that Copilot later uses as source material, so the malicious instructions can alter figures in the newly generated document and copy themselves into it. Microsoft confirmed the report and said it addressed the findings, but Måløy said the core vulnerability had not yet been fixed when he published.
Fix: Microsoft said it uses a defense-in-depth strategy with safeguards that block malicious instructions at multiple points, is continuously strengthening these safeguards, and encourages customers to install the latest updates, use multiple layers of security protection, treat content from unknown sources with caution, and review AI-generated content before using or sharing it. Måløy said the multiple small focused mitigations Microsoft implemented can reduce the demonstrated attack surface, though they do not eliminate the underlying problem.
CSO OnlineMicrosoft Copilot for Word Can Copy Hidden Prompts Into New Documents
Jul 30, 2026MediumNewsSecurityIndustryHåkon Måløy disclosed a technique in which hidden instructions in a Word document make Microsoft 365 Copilot halve financial figures in a report and copy the same instructions, in white eight-point text, into the finished file. The chain spreads only through further Copilot drafting or editing operations, and the disclosure reports no exploitation in the wild and no public CVE. Måløy says the attack class still reproduced on July 28, after Microsoft deployed two mitigations.
Fix: Microsoft deployed two mitigations: the first blocked the original prompt wording, and the second upgraded the underlying model to GPT-5.5. Måløy recommends treating external documents as untrusted, reviewing attached documents before starting a generation or edit, and checking Copilot-generated or edited files before reuse or sharing.
The Hacker News
Topic added 2026-10-09. An item belongs to this topic when its title matches one of the topic's patterns or its summary mentions the topic at least twice. Report a wrong match with the feedback button on the item.