Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
-
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
@GossiTheDog This seems uncomfortably similar to the issue where copilot was able to 'summarize' documents without leaving a trace of accessing them in the audit log.
It's as though everything gets munged into RAG vectors or whatever ahead of time; and then they are trying to apply the effect the controls should have after the fact.
-
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
@GossiTheDog more about problem and fix here with Tony Redmond @TonyRedmond (Office365ITPros): https://office365itpros.com/2026/02/13/dlp-policy-for-copilot-bug/
-
@GossiTheDog yeah a "BUG"
@lexinova @GossiTheDog confidential information has definitely leaked. Us peasants were not supposed to know what MS does with our data.
-
@GossiTheDog yeah a "BUG"
@lexinova a bug. As in a digital "listening" device planted by Microslop for (at least the) US police/authorities to hoover up all that juicy confidential data somewhere else.
@GossiTheDog -
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
So the AI assistant designed to help you write documents is now deleting your documents
At some point we need to ask: are we adding AI because it solves a problem, or because someone in a boardroom decided every product needs an AI checkbox for the next earnings call
This is what happens when you ship features to impress investors instead of users
-
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
@GossiTheDog fuck all the dicks that are not held accountable
-
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
@GossiTheDog They would never...
-
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
@GossiTheDog while generating summaries might be a benefit. Why delete the original mail? How can one implement such a feature so lousy? (rhetorical question)
[Edit] that mail gets deleted was an assumption on my part based on "data loss prevention" in the text. It might not be the case. And the issue is only that E-Mails are summarized while flagged to not get summarized in one view of the app.
-
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
@GossiTheDog every time I read anything on microsoft, the image my brain conjures up is pedo-pal gates photo and the red string connections he has to accessing hundreds of thousands of children via school systems
-
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
@GossiTheDog Microsoft: "Ooooh...whoops"

-
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
So...exactly according to plan.
-
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
@GossiTheDog As if we needed more arguments to abandon US based tech 🫠
-
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
@GossiTheDog I wonder how many GDPR notifications this will lead to...
-
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
@GossiTheDog @Npars01 I’m shocked. Shocked.
-
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
@GossiTheDog The shocking thing is that so many corporations and individuals still use that Spyware riddled OS.
-
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
@GossiTheDog Should I be surprised?
-
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
-
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
@GossiTheDog I literally had a supervisor excitedly sharing news on Friday that we would be rolling out ChatGPT for organizational use and how it was approved for editing confidential documents. I sent back a private reply that yeah, you better not believe that for an instant.
I just forwarded this link, can't wait to see the reply.
-
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
For some reason it hasn’t put out a security advisory - but instead buried it in a service alert which isn’t publicly visible.
Microsoft says bug causes Copilot to summarize confidential emails
Microsoft says a Microsoft 365 Copilot bug has been causing the AI assistant to summarize confidential emails since late January, bypassing data loss prevention (DLP) policies that organizations rely on to protect sensitive information.
BleepingComputer (www.bleepingcomputer.com)
@GossiTheDog The bug is "The warnings come at the end of the email", presumably.
-
@GossiTheDog while generating summaries might be a benefit. Why delete the original mail? How can one implement such a feature so lousy? (rhetorical question)
[Edit] that mail gets deleted was an assumption on my part based on "data loss prevention" in the text. It might not be the case. And the issue is only that E-Mails are summarized while flagged to not get summarized in one view of the app.
Where does it say the original email was deleted? I'm not seeing that.