Get the latest tech news

Thousands of Exposed GitHub Repositories, Now Private, Can Still Be Accessed Through Copilot


An anonymous reader quotes a report from TechCrunch: Security researchers are warning that data exposed to the internet, even for a moment, can linger in online generative AI chatbots like Microsoft Copilot long after the data is made private. Thousands of once-public GitHub repositories from some o...

Lasso co-founder Ophir Dror told TechCrunch that the company found content from its own GitHub repository appearing in Copilot because it had been indexed and cached by Microsoft's Bing search engine. Dror said the repository, which had been mistakenly made public for a brief period, had since been set to private, and accessing it on GitHub returned a "page not found" error. Lasso told TechCrunch ahead of publishing its research that affected organizations include Amazon Web Services, Google, IBM, PayPal, Tencent, and Microsoft.

Get the Android app

Or read this on Slashdot

Read more on:

Photo of Copilot

Copilot

Photo of Thousands

Thousands

Related news:

News photo

Spyzie stalkerware is spying on thousands of Android and iPhone users

News photo

Thousands of exposed GitHub repos, now private, can still be accessed through Copilot

News photo

Virgin Media internet restored after earlier outage