Feed
2 materials
Sort by

News
Copilot itself revealed a secret parameter that turned it into a password-stealing tool.
A vulnerability was found in Microsoft 365 Copilot that allowed a malicious prompt to be executed with a single click on a link: the undocumented ?autorun=1 setting activated it without user consent. Attackers could extract emails and passwords from mailboxes, and Microsoft only closed the hole after several months.
20 August 2026
Guides
Comparison of MCP servers for Claude, Cursor, and VS Code: how to choose for your task and budget
We examine how MCP servers for popular editors and assistants differ, which ones cover basic scenarios, and which require careful permission configuration. We provide practical guidance on features, pricing, and potential risks.
15 August 2026