Gadget Insiders
  • Android
  • Apple
  • Gaming
  • iOS
  • PC
  • Phones
  • Playstation
  • Reviews
  • Samsung
  • Xbox
No Result
View All Result
  • Android
  • Apple
  • Gaming
  • iOS
  • PC
  • Phones
  • Playstation
  • Reviews
  • Samsung
  • Xbox
No Result
View All Result
Gadget Insiders
No Result
View All Result
Home Artificial Intelligence

How Microsoft’s AI Mistakenly Shares Secret Codes from Top Tech Firms

Prashant Chaudhary by Prashant Chaudhary
March 2, 2025
in Artificial Intelligence, Microsoft, News
Reading Time: 2 mins read
0
Revealed: How Microsoft's AI Mistakenly Shares Secret Codes from Top Tech Firms

In a striking revelation, Microsoft’s AI assistant, Copilot, has been found to expose over 20,000 private GitHub repositories belonging to industry giants such as Google, Intel, and ironically, Microsoft itself. Despite efforts to privatize these repositories after realizing their sensitive contents, they remain accessible, showcasing a critical vulnerability in data privacy practices.

Revealed: How Microsoft's AI Mistakenly Shares Secret Codes from Top Tech Firms
Microsoft’s AI Exposes Private GitHub Repositories – Here’s What You Need to Know

A Discovery by Lasso: Unearthing Inaccessible Data

Lasso, an AI security firm, uncovered this alarming behavior in late 2024, finding that Copilot retained and provided access to repositories initially made public and later set to private. “After realizing that any data on GitHub, even if public for just a moment, can be indexed and potentially exposed by tools like Copilot, we were struck by how easily this information could be accessed,” remarked Ophir Dror and Bar Lanyado of Lasso.

This issue was traced back to a caching mechanism within Bing, Microsoft’s search engine, which failed to update its index when repositories were privatized. Although Microsoft attempted a fix by disabling a Bing cache feature, the private repositories continued to surface via Copilot, challenging the effectiveness of the measures taken.

Revealed: How Microsoft's AI Mistakenly Shares Secret Codes from Top Tech Firms
Tech Giants’ Secret Code Exposed – The AI Blunder Microsoft Didn’t Fix

Microsoft’s Partial Fixes and Ongoing Vulnerabilities

The findings by Lasso confirmed that while direct public access to these repositories was blocked, the underlying data wasn’t entirely purged from Bing’s cache, leaving a backdoor open for Copilot to access and distribute the sensitive data. This revelation underscores a significant oversight: “Although Bing’s cached link feature was disabled, cached pages continued to appear in search results,” Lasso’s researchers explained, pointing out the partial nature of the fix.

The Broader Impact and Legal Entanglements

This exposure not only highlights technical deficiencies but also aligns with ongoing legal battles where Microsoft has taken action to remove certain tools from GitHub, alleging violations of multiple laws, including the Computer Fraud and Abuse Act and the Digital Millennium Copyright Act. Despite their removal, these tools were still accessible through Copilot, further complicating Microsoft’s legal and security landscape.

Revealed: How Microsoft's AI Mistakenly Shares Secret Codes from Top Tech Firms
Sensitive Data Leaked? How Copilot Still Accesses ‘Private’ GitHub Repos

Microsoft’s Response and Recommendations for Developers

In response to the unfolding situation, Microsoft advised, “If users prefer to avoid making their content publicly available for training these models, they are encouraged to keep their repositories private at all times.” This statement, however, lightly skirts around the core issue that even brief public exposure can lead to prolonged unauthorized access through AI tools like Copilot.

Tags: AI SecurityCybersecurityData BreachGitHub LeakMicrosoft Copilotprivate repositoriesTech Scandal

TRENDING

Google’s Gemini AI to Transform Your Car with Android Auto

Google’s Gemini AI to Transform Your Car with Android Auto

May 15, 2025
Google Set to Launch Pinterest-Like Feature at I/O 2025 to Change How We Search

Google Set to Launch Pinterest-Like Feature at I/O 2025 to Change How We Search

May 15, 2025
Samsung's New Galaxy S25 Edge Is the Slimmest Smartphone Yet – A Bold Move to Beat Apple

Samsung’s New Galaxy S25 Edge Is the Slimmest Smartphone Yet – A Bold Move to Beat Apple

May 15, 2025
60+ Gaming Consoles and Platforms Compared

60+ Gaming Consoles and Platforms Compared

May 15, 2025
75+ Smart Home Gadgets That Work with Google Home

75+ Smart Home Gadgets That Work with Google Home

May 15, 2025
iOS 19 Aims to Fix Bugs and Introduce a Fresh Look – What We Can Expect

iOS 19 Aims to Fix Bugs and Introduce a Fresh Look – What We Can Expect

May 15, 2025
Nintendo’s New EULA Update Makes It Harder for Users to Sue Over Issues Like Joy-Con Drift

Nintendo’s New EULA Update Makes It Harder for Users to Sue Over Issues Like Joy-Con Drift

May 11, 2025
LegoGPT Lets You Create Real Lego Designs from Text – Here’s How It Works

LegoGPT Lets You Create Real Lego Designs from Text – Here’s How It Works

May 11, 2025
  • Contact Us
  • Terms
  • Privacy
  • Copyright
  • About Us
  • Fact Checking Policy
  • Corrections Policy
  • Ethics Policy

Copyright © 2023 GadgetInsiders.com

No Result
View All Result
  • Android
  • Apple
  • Gaming
  • iOS
  • PC
  • Phones
  • Playstation
  • Reviews
  • Samsung
  • Xbox

Copyright © 2023 GadgetInsiders.com.