Microsoft warns Windows 11’s new agentic AI could install malware on your computer

Microsoft is cautioning Windows 11 users about new AI features that are still in development. They advise against turning these features on unless you’re aware of the possible dangers, like accidentally installing harmful software. These AI capabilities will be turned off by default to protect users from unexpected problems.

Microsoft is issuing this warning as it begins testing new AI features with Windows Insiders. These features let AI assistants work for you within a special area, giving them access to your apps, files, and system tools.

Microsoft is working to make Windows 11 more intelligent with artificial intelligence, but recent details about how this will work have raised some security worries.

Microsoft explains, as first noted by Windows Central, that turning on this feature creates local user accounts with restricted access to a user’s personal files.

When enabled, these tools have access to your Documents, Downloads, Desktop, Videos, Pictures, and Music folders, allowing them to both read and save files. The company emphasizes that only an administrator can turn this feature on, and it will affect all user accounts on the computer once activated.

Windows 11 Agentic AI features are turned off by default due to “novel security risks”

Microsoft outlines new security risks tied to AI agents

Microsoft’s help documents explain that AI systems that act independently (“agentic AI”) create new security concerns. One of these is “prompt injection,” where harmful code or text can hijack the AI’s instructions. This could allow someone to steal data or even install malicious software.

The company is adding security measures to keep track of what its AI agents are doing. Windows will now require all agent actions to be recorded and reviewed, with a system in place to detect anything unusual.

Human approval is also required when agents attempt higher-risk operations.

Microsoft announced that test versions of the feature are now being released, but developers haven’t yet been given access to use it in their apps.

Copilot is predicted to be among the first tools available in the new agentic workspace, and more developers are expected to create similar tools as the system develops.

Read More

2025-11-18 19:21