Find notable cyber news and cases, enriched with sources, timelines, and signals.

UK and US Microsoft 365 AI rollout outpaces permissions review

Trend
First reported
Last updated
Happening score
H score 26
1 unique sources, 1 articles

Summary

Hide ▲

UK and US organizations are deploying Copilot and other Microsoft 365 AI tools faster than they are reviewing permissions, widening exposure to broadly shared content. Only 43% completed a thorough oversharing review before rollout, while 91% say they can see active agents and their reach. Access governance is even thinner for agent controls: just 22% have a formal policy, and 9% let an agent inherit the deployer's full permissions. The pattern leaves sensitive SharePoint and file content reachable through AI surfaces that inherit existing access.

Related Happenings

Obsidian Security adds native governance controls for Claude Code and Cowork

Security Tool/Service
H score19 First: 04.08.2026 15:00 Last: 04.08.2026 15:00 Sources 1

About this happening: Obsidian Security expanded its agent governance platform with native controls for Claude Code and Cowork, tightening enterprise oversight of AI-agent access to production...

Enterprise AI guardrails for shadow AI and personal-account exposure

Defensive Guidance
H score6 First: 28.05.2026 14:30 Last: 28.05.2026 14:30 Sources 1

About this happening: Enterprise AI governance is shifting toward AI power users, personal accounts, and inline guardrails as sensitive-data exposure concentrates in a small share of workfl...

Microsoft launches agent guardrails, identities, and Security Copilot updates for agentic AI

Security Tool/Service
H score11 First: 24.03.2026 14:28 Last: 24.03.2026 14:28 Sources 1

About this happening: Microsoft rolled out new agentic AI security controls at RSAC Conference, adding preview guardrails in Microsoft Foundry, agent identities in Entra ID, and upd...

Tenable One AI Exposure launches as a cloud-native add-on for AI exposure management

Security Tool/Service
H score11 First: 30.01.2026 22:23 Last: 30.01.2026 22:23 Sources 1

About this happening: Tenable has launched Tenable One AI Exposure, a cloud-native add-on that helps enterprises detect and govern agentic and generative AI use before it creates data exp...

Timeline

  1. 11.09.2026 12:30 2 articles · 0h ago

    Syskit report finds Microsoft 365 AI rollouts outpace permissions reviews

    Initial Disclosure

    Syskit's State of Microsoft 365 Governance Report found that 76% of organizations in the UK and US had deployed or piloted an enterprise AI tool such as Copilot on Microsoft 365 data, but only 43% had completed a thorough permissions and oversharing review before rollout. The same survey said only 22% of respondents had a formal policy defining what AI agents may access, 9% let an agent inherit the full permissions of the person who deployed it, and 90% had experienced or suspected a security incident linked to misconfiguration or over-permissioned access in the past two years.

    Show sources