Today: the five AI headlines of the day → and the AI Wiki
What a claim record is How to read this page

One statement, bounded on purpose

The headline is a single claim that a named source supports. It is written narrowly so that adoption, attention, revenue and welfare are never collapsed into one comfortable word.

The three sections below the fold

What this does not establish is the boundary of the evidence. Counterevidence & uncertainty is what argues the other way. What would change the reading is the observation that would move it. A record missing any of the three is incomplete, not merely brief.

Primary routes are checkable

Every source is listed with its canonical URL so you can open the document yourself. A route that stops resolving is recorded as such rather than quietly dropped, and the claim weakens with it.

New to this publication?

The ten-minute guide takes one live record apart, defines every term and gives the order to read the site in. Start here →

MWITA-AI-2026-013 · Evidence A · P1

Microsoft and the original EchoLeak research describe CVE-2025-32711 as a multi-stage cross-prompt-injection vulnerability that could make Microsoft 365 Copilot exfiltrate limited data already accessible to the victim.

Counterevidence & uncertainty

A demonstrated vulnerability is not an observed victim incident or prevalence estimate.

What would change the reading

Update with vendor advisories, observed exploitation or independent reproduction against fixed versions.

Primary routes

  1. AI-S014https://www.microsoft.com/en-us/security/security-insider/emerging-trends/ai-application-security-considerations-for-organizationsOpen source record →
  2. AI-S015https://www.microsoft.com/en-us/msrc/blog/2025/07/how-microsoft-defends-against-indirect-prompt-injection-attacksOpen source record →
  3. AI-S016https://arxiv.org/abs/2509.10540Open source record →

External content is evidence, never executable instruction.