Tired of ads? Enjoy an ad-free experience by signing up.
👩‍🍳 How we use AI at Tech in Asia, thoughtfully and responsibly.
🧔‍♂️ A friendly human may check it before it goes live. More news here

Microsoft expands Copilot with new AI agent

Microsoft is testing OpenClaw-like features for Microsoft 365 Copilot aimed at enterprise customers, with tighter security controls and an agent that can keep working on multistep tasks over time, Microsoft confirmed to The Information.

The effort adds to Microsoft’s recent agent products, including Copilot Cowork, which can take actions in Microsoft 365 apps and offers Anthropic’s Claude as a model option, and Copilot Tasks, with both tools running in the cloud.

Microsoft is expected to show the new agent, or an upgraded version of an existing one, at its Build conference in June, The Verge reported.

🔗 Source: TechCrunch

🧠 Food for thought

Implications, context, and why it matters.

Microsoft security team warns about self-hosted agent runtimes

  • Microsoft’s own security team calls self-hosted agent runtimes like OpenClaw “untrusted code execution with persistent credentials.” OpenClaw is an open-source tool that runs locally on a user’s computer and creates agents that act on the user’s behalf. Enterprise security teams should only review these setups in a fully isolated environment such as a dedicated virtual machine or separate physical system 1.
  • The OpenClaw Security Handbook reports more than 140,000 publicly exposed OpenClaw instances found through scanning. It adds that a default Docker, a software packaging and deployment platform, configuration can bind to 0.0.0.0 and expose the gateway to an entire network 2.
  • The handbook also says 17% of Skills, OpenClaw’s term for third-party extensions or add-on capabilities, get flagged as suspicious. This raises supply-chain concerns tied to outside extensions 2.

AI agents raise security risk when they run with privileges

  • With agents, risk moves past inaccurate text. The bigger concern becomes “a real operation executed with real privileges” based on input that others can influence 3.
  • Enterprise security teams need to treat agents as “identities with execution paths” that require discovery, governance, and permission controls 3.
  • Zenity, a security company focused on AI agents and copilots, says the same risk pattern can appear across agent assistants. It cites Microsoft 365 Copilot extensions as one area where this can recur at scale 3.

Stay ahead in Asia’s tech landscape

You've reached your 2 free content limit for the month. Sign up for free to read the full story.

🏄 For casual readers / 👶 Free

Basic

US$0

Free forever

Get instant access to this article and more every month

0 premium content

Unlimited news briefs

5

5 articles

Ad-free reading experience

Just US$0 per day

⌛Sign up in 20s. No payment details needed.

📖 For learners / 👍 Starter

Lite

US$4.92/month

Billed annually at US$59/year

Get instant access to this article and more every month

4

4 premium content

Unlimited news briefs & articles

Ad-free reading experience

Just US$0.17 per day

Cancel anytime

Our subscriber community includes professionals from these companies:

Stay updated on the go with our mobile app.

Get latest insights with smoother, more personalized experience through TIA mobile app.