logo

Hackers Exploit Copilot Studio’s New Connected Agents Feature to Gain Backdoor Access

ID: 30806758-f2b6-572f-9b9a-79e38482dd8c

STIX ID: report--30806758-f2b6-572f-9b9a-79e38482dd8c

Feed Name: cybersecurityNews.com

Threat Score
75/100

Date Published: 2025-12-30

Date Updated: 2026-04-21

Author: Abinaya

...
...

Microsoft’s Copilot Studio 'Connected Agents' feature — enabled by default on new agents — exposes an agent’s tools and knowledge to all other agents in the same environment. Zenity Labs demonstrates proof-of-concept abuse where malicious agents connect to privileged agents (such as email-sending agents) to send impersonated emails while leaving no traces in activity logs, enabling large-scale phishing and brand impersonation. The report urges organizations to audit and disable Connected Agents for sensitive agents, implement tool authentication, and review knowledge source and publishing access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.