Windows 11 agentic artificial intelligence features pose security risks, Microsoft confirms

Microsoft is adding optional agentic artificial intelligence features to Windows 11 that can act on user commands, but the company warns they may introduce significant security vulnerabilities.

Microsoft is updating Windows 11 to support agentic artificial intelligence features that allow software agents to perform tasks inside the operating system based on simple user commands. The company says these agents can take actions such as opening a web browser, searching for a service, and entering payment and address details on behalf of the user. The capability appears in Windows 11 Build 26220.7262 as a new toggle hidden in Settings > System under an ‘Artificial intelligence components’ section and is optional and manually enabled by users.

When users enable the setting, Microsoft displays a clear warning: ‘These features are still being tested and may impact the performance or security of your device.’ The company highlights security as the primary concern for agentic functionality. Because the agents can interact with web content and local interfaces automatically, Microsoft and reporting outlets flag potential attack vectors that did not exist in the same way before these features were introduced. The feature is experimental and presented as an opt-in toggle labeled ‘experimental agentic features’ in the build noted by reporting from Windows Latest.

One specific class of vulnerability called cross-prompt injection is described as particularly problematic. In these attacks, malicious directives are concealed inside ordinary documents, interface elements, or web content so that the agent reinterprets or overrides its original instructions and carries out unintended actions. Consequences include the agent installing malware, transmitting sensitive data such as credit card information and addresses to third parties, and other unauthorized operations. The article underscores that these risks are inherent to making agents more capable within the operating system and that users must enable the experimental features deliberately, accepting the stated security trade-offs.

55

Impact Score

UK and EU Artificial Intelligence regulatory outlook for May 2026

The UK is moving ahead with targeted Artificial Intelligence measures in policing, online safety, cyber security and copyright policy, while the EU is refining how the EU Artificial Intelligence Act will apply in practice. Consultations, new offences and implementation deadlines are shaping the next phase of compliance on both sides.

Germany sets out national implementation of the Artificial Intelligence Act

Germany has published a draft law to implement the European Artificial Intelligence Act through new supervisory structures, clearer institutional responsibilities, and measures designed to support innovation. The proposal puts the Federal Network Agency at the center of enforcement while preserving sector-specific oversight in sensitive fields.

ECB warns banks about new Artificial Intelligence security risks

The European Central Bank has called major banks to an emergency meeting over cybersecurity risks tied to advanced Artificial Intelligence models. Regulators want banks to speed up security updates as newer tools make it easier to find and exploit vulnerabilities.

Anthropic keeps Mythos restricted after vulnerability findings

Anthropic says its cybersecurity model Mythos is powerful at uncovering software flaws but remains too risky for broad release. Early testing found large numbers of vulnerabilities across major software and open source projects, while fixes have lagged far behind discoveries.

Nvidia targets the CPU market

Nvidia is broadening its semiconductor strategy beyond graphics processors and positioning its CPU business as a major new growth area. The company’s market forecast also highlights China as a key part of its long-term opportunity despite ongoing export restrictions.

Contact Us

Got questions? Use the form to contact us.

Contact Form

Clicking next sends a verification code to your email. After verifying, you can enter your message.