Quiz 15 Question 16 of 20

A security engineer is reviewing a Copilot Studio computer-use agent that automates invoice processing. The agent reads scanned invoice images from a shared network folder, extracts line items, and then enters the data into the company's ERP system using screen automation. During a threat modeling session, the engineer identifies that a malicious actor could embed hidden instructions inside a specially crafted invoice image to redirect the agent's actions. What is this attack vector called, and which primary mitigation should the engineer implement?

Select an answer to reveal the explanation.

Motivation