You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: defender-for-cloud-apps/ai-agent-inventory.md
+5-6Lines changed: 5 additions & 6 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -12,8 +12,7 @@ ms.reviewer: gayasalomon
12
12
13
13
# Discover and protect your Copilot Studio custom AI Agents (Preview)
14
14
15
-
Microsoft Defender identifies all Copilot Studio custom AI agents in your tenant and provides tools to identify misconfigured or potentially risky agents, and collects
16
-
data from Copilot Studio for use in [advanced hunting](/defender-xdr/advanced-hunting-overview).
15
+
Microsoft Defender detects all Copilot Studio custom AI agents in your tenant and provides tools to identify misconfigured or potentially risky agents, and collects data from Copilot Studio for use in [advanced hunting](/defender-xdr/advanced-hunting-overview).
17
16
18
17
## Prerequisites
19
18
To enable AI agent threat protection inventory and detection you must opt in to public preview features of:
@@ -40,7 +39,7 @@ To enable Copilot Studio AI agent threat protection inventory, follow these step
40
39
1. Select **Microsoft Defender - Copilot Studio AI Agents**.
41
40
1. Turn on **Enable Microsoft Defender - Copilot Studio AI Agents**.
42
41
43
-
When Copilot Studio AI Agents are connected, a green indicator appears in the **AI Agents Inventory** section in the Microsoft Defender portal. It can take up to 30 minutes for the initial connection status to update. Depending on the size and complexity of your environment, it might take longer to see the full deployment of the AI agent inventory.
42
+
When Copilot Studio AI Agents are connected, a green indicator appears in the **AI Agents Inventory** section in the Microsoft Defender system settings. It can take up to 30 minutes for the initial connection status to update. Depending on the size and complexity of your environment, it might take longer to see the full deployment of the AI agent inventory.
44
43
45
44
46
45
## Identify misconfigured or risky AI agents
@@ -52,10 +51,10 @@ After you give Microsoft Defender access to your custom agents, you can use adva
52
51
1. In the **Queries** tab, see the **MCS AI Agents** section for predefined KQL queries to help identify misconfigured or risky agents.
53
52
54
53
For example, you can use queries to: :
55
-
- locate agents that use maker authentication mechanisms, which might allow access to data users shouldn't have
56
-
- locate agents that haven't been used for over 30 days, as they might create unnecessary exposure without contributing to productivity.
54
+
- locate published agents that use maker authentication mechanisms, which might allow access to data users shouldn't have
55
+
- locate published agents that haven't been used for over 30 days, as they might create unnecessary exposure without contributing to productivity.
57
56
58
-
We recommend deleting risky agents or reaching out to their owners for further information.
57
+
We recommend that you reach out to the owners of the risky agents for more information, and that you consider quarantining or deleting the risky agents.
59
58
60
59
See [Proactively hunt for threats with advanced hunting in Microsoft Defender](/defender-xdr/advanced-hunting-overview) to learn how to use queries to proactively hunt for threats.
Copy file name to clipboardExpand all lines: defender-for-cloud-apps/ai-agent-protection.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -19,7 +19,7 @@ As no code/low code platforms become increasingly accessible, organizations face
19
19
20
20
Microsoft Defender addresses critical security gaps with comprehensive AI agent protection that includes proactive exposure, threat hunting, real time protection, and alerts. With AI agent protection, Microsoft Defender:
21
21
22
-
- Detects all of your custom AI agents created with Microsoft Copilot Studio, and integrates their data into advanced hunting for proactive threat detection. You can use this data to create custom queries and hunt for potential threats. See [Discover and protect your AI agents (Preview)](ai-agent-inventory.md) to learn how to set up and make use of the AI agent inventory.
22
+
- Detects all of your custom AI agents created with Microsoft Copilot Studio, and integrates their data into advanced hunting for proactive threat detection. You can use this data to create custom queries and hunt for potential threats. See [Copilot Studio AI agent threat protection inventory (Preview)](ai-agent-inventory.md) to learn how to set up and make use of the AI agent inventory.
23
23
- Collects audit logs for your custom AI agents created with Copilot Studio, continuously monitors the agents for suspicious acitivity, and enables detections and alerts. To enable this monitoring, make sure that you:
24
24
-[Enable the AI agent threat protection inventory](ai-agent-inventory.md#enable-copilot-studio-ai-agent-threat-protection-inventory).
25
25
-[Enable the Microsoft 365 app connector](protect-office-365.md#connect-microsoft-365-to-microsoft-defender-for-cloud-apps).
0 commit comments