AI Agents - MCP Tool Configured

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Content Index


This query identifies Copilot Studio AI agents that have Model Context Protocol (MCP) tools configured. MCP tools extend agent capabilities but introduce additional security considerations because they can execute advanced operations and interact with external resources. If misconfigured or unnecessary, these tools may increase the attack surface and expose sensitive data or functionality. Recommended Action: Confirm with the agent owner whether the MCP tool is still required. If it is, review i

Attribute Value
Type Hunting Query
Solution GitHub Only
ID 6d8e5f9a-0b1c-2d3e-4f5a-6b7c8d9e0f1a
Tactics Execution
Techniques T1059
Source [View on GitHub](https://github.com/Azure/Azure-Sentinel/blob/master/Hunting Queries/AI%20Agents/Copilot%20Studio%20Connector/AIAgentsMCPToolConfigured.yaml)

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Hunting Queries