Alert icon Keyboard navigation enabled.
Alert icon TAB or Shift+TAB to navigate across. Down ↓ to open menu. ESC to close menu.
Alert icon Down ↓ to select section. Right → to activate. Up ↑ / Down ↓ / Tab to traverse all. ESC to exit.
BeyondTrust
Skip to content Use space or enter to skip.

What can we help you find today?

Instant Results
  • Website Results
  • Technical Documentation

Filter Options

Focus your search

Filtering by

Your recent searches:

Contact Us Chat with Sales Get Support
  • English
  • Deutsch
  • français
  • español
  • 한국어
  • português

Info icon Announcement: 2026 KuppingerCole PAM Leadership Compass: BeyondTrust recognized as an Overall Leader and top Product Leader among 36 evaluated vendors. Access the Report

  • Home
  • Resources
  • Blog current page
Link copied

The BeyondTrust Blog

Catch up on identity security and PAM trends, cybersecurity best practices, expert research and opinions, and BeyondTrust news and product updates.

Beyond Trust Blog
Resource Center

Share with a custom URL copied to your clipboard

Filters

Loading
URL Copied!
Copied to Clipboard!

Tags

Channels

Loading:
Loading
AI Agents

A Security Researcher’s Guide to Understanding Copilot Studio AI Agents

A guide to understanding Copilot Studio AI agents, their deeper architecture on Entra ID and APIM, and key security risks.

Continue Reading :A Security Researcher’s Guide to Understanding Copilot Studio AI Agents
Reading Time: 3 mins
Pathfinder AI and MCP

Introducing PathfinderAI and MCP Server: Simplifying Privilege-Centric Identity Security by Using AI on Your Terms

Security teams are drowning in disconnected tools, manual reporting, and complex identity data. PathfinderAI, built into the BeyondTrust Pathfinder Platform, introduces natural language intelligence to simplify identity security operations. With MCP Server integration, organizations can securely extend these capabilities across AI ecosystems like Microsoft Copilot and ServiceNow—transforming how teams analyze, prioritize, and remediate privilege risks.

Continue Reading :Introducing PathfinderAI and MCP Server: Simplifying Privilege-Centric Identity Security by Using AI on Your Terms
Reading Time: 8 mins
Zero Day Proper Definition

The Proper Zero Day Vulnerability Definition

In cybersecurity, “zero day” is frequently diluted and used as a catch-all for any unpatched vulnerability. This article breaks down the three mandatory elements of a true zero day, illustrating why the distinction between a zero day and a known, but unpatched, flaw is critical for effective defense.

Continue Reading :The Proper Zero Day Vulnerability Definition
Reading Time: 6 mins
AI Security

Claude & Control: An Introduction to Agentic C2 with Computer Use Agents

This blog explores how computer use agents can be used to build an agentic command-and-control framework. By combining LLM reasoning with desktop interaction tools, attackers could automate endpoint control while blending into normal system behavior. Here, we break down the architecture, abuse scenarios, and detection opportunities.

Continue Reading :Claude & Control: An Introduction to Agentic C2 with Computer Use Agents
Reading Time: 12 mins
AI Agent Code Interpreter

Pwning AI Code Interpreters in AWS Bedrock AgentCore

Phantom Labs discovered that AWS Bedrock AgentCore Code Interpreter’s sandbox mode allows DNS queries, enabling bypass of network isolation through DNS-based command-and-control. This research details the discovery, proof-of-concept exploit, disclosure timeline, and defensive guidance for organizations using Code Interpreter workloads.

Continue Reading :Pwning AI Code Interpreters in AWS Bedrock AgentCore
Reading Time: 10 mins
BT Resources BLOG thumbnails 2000x2000 31

Securing Agentic AI Workloads with Visibility and Privileged Control

Comprehensive visibility and privileged control provide the necessary foundation for securing agentic AI workloads against emerging identity threats.

Continue Reading :Securing Agentic AI Workloads with Visibility and Privileged Control
Reading Time: 6 mins
  • AI Agents
    May 26, 2026

    A Security Researcher’s Guide to Understanding Copilot Studio AI Agents

    Blog
    3m
  • Pathfinder AI and MCP
    Apr 27, 2026

    Introducing PathfinderAI and MCP Server: Simplifying Privilege-Centric Identity Security by Using AI on Your Terms

    Blog
    8m
  • Zero Day Proper Definition
    Apr 8, 2026

    The Proper Zero Day Vulnerability Definition

    Blog
    6m
  • AI Security
    Apr 9, 2026

    Claude & Control: An Introduction to Agentic C2 with Computer Use Agents

    Blog
    12m
  • AI Agent Code Interpreter
    Mar 16, 2026

    Pwning AI Code Interpreters in AWS Bedrock AgentCore

    Blog
    10m
  • BT Resources BLOG thumbnails 2000x2000 31
    Mar 23, 2026

    Securing Agentic AI Workloads with Visibility and Privileged Control

    Blog
    6m

Threat Watch: Latest Updates from Beyond Phantom Labs™

  • BT Resources BLOG thumbnails 2000x2000 37

    Jun 15, 2026

    Mapping Every Privilege Escalation Path in AWS AgentCore

    Blog
    12m
  • Okta Abuse pt 2

    Jun 12, 2026

    Hooked on Identity (Part 2): Abusing OAuth Trust Boundaries in Okta

    Blog
    7m
  • Okta Abuse pt 1

    Jun 9, 2026

    Hooked on Identity: Abusing SAML Assertion Inline Hooks in Okta

    Blog
    6m
  • AI Agents

    May 26, 2026

    A Security Researcher’s Guide to Understanding Copilot Studio AI Agents

    Blog
    3m
  • AI Security

    Apr 9, 2026

    Claude & Control: An Introduction to Agentic C2 with Computer Use Agents

    Blog
    12m
  • BT Resources BLOG thumbnails 2000x2000 33

    Mar 30, 2026

    How Command Injection Vulnerability in OpenAI Codex Leads to GitHub Token Compromise

    Blog
    4m

Explore Our Latest Blog Articles

  • BT Resources BLOG thumbnails 2000x2000 37
    Jun 15, 2026

    Mapping Every Privilege Escalation Path in AWS AgentCore

    Blog
    12m
  • Okta Abuse pt 2
    Jun 12, 2026

    Hooked on Identity (Part 2): Abusing OAuth Trust Boundaries in Okta

    Blog
    7m
  • Okta Abuse pt 1
    Jun 9, 2026

    Hooked on Identity: Abusing SAML Assertion Inline Hooks in Okta

    Blog
    6m
  • Beyond Trust
    Jun 8, 2026

    Joining Project Glasswing: Securing the Privilege Backbone of the AI Era

    Blog
    5m
  • Shadow IT thumbnail
    Jun 5, 2026

    The Most Common & Most Dangerous Types of Shadow IT

    Blog
    19m
  • Password Encryption 101
    May 28, 2026

    14 Password Management Best Practices

    Blog
    12m
  • AI Agents
    May 26, 2026

    A Security Researcher’s Guide to Understanding Copilot Studio AI Agents

    Blog
    3m
  • Cloud security
    May 21, 2026

    How to Secure Cloud-Native Infrastructure at Scale and Speed: A Conversation with Madhu Adireddi

    Blog
    5m
  • African Tel Co thumbnail
    May 12, 2026

    Cybersecurity as a Boardroom Priority for Major African TelCos

    Blog
    8m
  • Geopolitics and Cybersecurity thumbnail 1
    May 11, 2026

    Geopolitics and Cybersecurity: Why Attackers Go After Identities and Privileged Access First

    Blog
    4m
Loading

Stay up to Date

White chain icon to symbolize the ability to copy a link
Link copied
Check mark to visually show text has been copied
Get the latest news, ideas, and tactics from BeyondTrust. You may unsubscribe at any time.

Keep up with BeyondTrust

Customer Support Get Started
  • LinkedIn
  • X
  • Facebook
  • Instagram
  • Add BeyondTrust as a preferred source on Google
  • Privacy
  • Security
  • Manage Cookies
  • Do Not Sell My Data
  • WEEE Compliance

Copyright © 2003 — 2026 BeyondTrust Corporation. All rights reserved. Other trademarks identified on this page are owned by their respective owners. BeyondTrust Corporation is not a chartered bank or trust company, or depository institution. It is not authorized to accept deposits or trust accounts and is not licensed or regulated by any state or federal banking authority.

Prefers reduced motion setting detected. Animations will now be reduced as a result.
MS Vulns Report 2026 orange background 1

New: 2026 Microsoft Vulnerabilities Report

Access the report for expert analysis of Microsoft's vulnerability and security landscape, breaking down key trends, security shifts, emerging risks—and what it all means for you.

Get the Report

New: 2026 Microsoft Vulnerabilities Report: Access the report for expert analysis of Microsoft's vulnerability and security landscape, breaking down key trends, security shifts, emerging risks—and what it all means for you.

Get the Report