Microsoft Entra ID Agent ID Administrator Role Vulnerability Enables Privilege Escalation
Patch Microsoft Entra ID to the latest version or apply the security advisory immediately.
Patch Microsoft Entra ID to the latest version or apply the security advisory immediately.
Summary
Microsoft Entra ID introduced the Agent ID Administrator role as a privileged built‑in role to manage AI agent identity lifecycle operations. Security researchers discovered that this role can be abused to perform privilege escalation and identity takeover attacks within a tenant. The vulnerability allows an attacker with the role to gain elevated permissions and potentially control other users’ identities. Microsoft has issued a security advisory and is working on a patch. The flaw does not require any additional software and can be exploited by anyone who has been granted the Agent ID Administrator role. The advisory recommends reviewing role assignments and applying the latest updates. The impact is confined to Entra ID tenants that have enabled the Agent ID Administrator role.
Key changes
- Agent ID Administrator is a privileged built‑in role in Microsoft Entra ID.
- Role handles AI agent identity lifecycle operations.
- Vulnerability allows privilege escalation and identity takeover.
- Attackers can gain elevated permissions within the tenant.
- Microsoft has issued a security advisory; patch pending.