News and Knowledge Portal for Identity Verification Professionals

collapse
...
Home / Technology / Microsoft Entra Agent ID Flaw Enabled Tenant Takeover via Privilege Escalation
Microsoft Entra Agent ID Flaw Enabled Tenant Takeover via Privilege Escalation

Microsoft Entra Agent ID Flaw Enabled Tenant Takeover via Privilege Escalation

2026-04-26  Ian Fleming

Cybersecurity researchers at the identity protection firm Silverfort found a vulnerability in a Microsoft platform built to manage AI. The issue involved Microsoft Entra Agent ID, an identity and authorisation framework that gives AI agents their own identities. These identities allow them to log into systems and access resources just like human users. To manage this environment, Microsoft created a specific directory role known as the Agent ID Administrator.


Share: