Microsoft introduced a redesigned consumer Copilot featuring Home, Code, and Autopilot capabilities. The launch follows Microsoft’s statement that its updated consumer Copilot application, available since August 18, does not use user prompts, responses, or uploaded files to train foundation models.
A 404 Media report, republished by Malware News, said third-party contractors review some Copilot image-editing interactions, including original uncensored uploads, edit prompts, and generated outputs, to assess technical quality. The material reportedly can include sexual, abusive, potentially nonconsensual, and child-related content; reviewers reportedly do not make safety or legal determinations. Microsoft’s earlier consumer privacy documentation said conversations may be retained for up to 18 months and that uploaded files or images may be used for AI training, while the company had not clarified whether users can opt out of the reported human-review process for image uploads.

Track how attackers are adapting to this technology.
4 events from the most recent confirmed update back to the earliest known activity.
Microsoft's updated consumer Copilot application became available and, according to Microsoft, does not use prompts, responses, or uploaded-file contents to train foundation models.
In early 2024, Microsoft machine-learning engineer Shane Jones publicly raised concerns that safeguards in Copilot's DALL-E 3-based text-to-image functionality could be bypassed.
404 Media reported that third-party contractors review some Copilot users' uncensored uploaded photos, edit prompts, and generated image outputs for technical quality. The reported material included sexual, potentially nonconsensual, abusive, and child-related content, while reviewers were not tasked with safety or legal determinations.
Microsoft remediated a Copilot Designer loophole that had enabled the creation of nonconsensual intimate deepfakes of Taylor Swift.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
2 references tracked. Mallory keeps watching after this page renders.
malware.news
Open sourceblogs.microsoft.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.