What happened
Attacker creates a malicious Copilot Studio agent within the target's Microsoft 365 environment, connects it to a trusted agent with email-sending capabilities, then uses the connection to send phishing emails impersonating the organization — with zero messages appearing in the targeted agent's activity tab.