Well, that sounds promising..
Oh no.
And I thought people understood that.
You train a monkey to learn from a bunch of level intelligence monkeys. The same applies for AI. Just this time we are the monkeys.
Even if you processed it via a screenshot, image files are processed byte by byte as well and can contain textual metadata.
It is fun to see how all AI narratives are collapsing.
Purged I would have
All things Microsoft from my (controllable) world
I believe you would see hidden text by default (but this was a long time ago and I may have misremembered) when in "normal mode" (later "draft mode" and now removed entirely). But when you switch to "print layout mode" (now the usual view unless you're in reading mode) it would be hidden, so you could see what it would be like printed, unless you explicitly turned on the display of hidden text in that mode.
Canopy9560•46m ago
This post covers a coordinated disclosure with Microsoft (MSRC) regarding a vulnerability class that allows attacker-controlled instructions in an attached document to hijack Copilot for Word.
It manipulates the AI to alter the output text (e.g., halving financial figures) and append the attack prompt into the new document concealed as white text.
Because the downstream document now carries the payload, it acts similarly to an AI worm across normal user workflows. Microsoft deployed multiple fixes over a 144-day coordination period, but the broader vulnerability class remains unmitigated and exploitable because it exploits fundamental limitations of current LLMs.
When attacker instructions are combined with legitimate information the model's context window, the tokens being inspected participate in the act of inspection, meaning current LLM architectures provide no reliable boundary between intention and interpretation.