16 Sources
[1]
Microsoft patches record number of security vulnerabilities, citing its use of AI
Microsoft released a record number of security patches for Windows, Office, and other tech product lines this week, citing the use of AI to aid the discovery of code vulnerabilities. The technology and cloud giant issued patches for 570 security flaws on Tuesday as part of its monthly scheduled release of fixes, which security researchers have long dubbed "Patch Tuesday." At least two of the vulnerabilities are classified as zero-days, meaning that they were exploited before Microsoft was made aware of them. One bug affecting Windows Server allows hackers to escalate their privileges from a limited user to a system administrator. Another bug affects the SharePoint file sharing server -- the U.S. government's cybersecurity agency CISA has warned hackers were actively exploiting the bug to compromise organizations. Krebs on Security first reported the news. The huge patch update comes a week after Microsoft said in a blog post that it expected its usual batch of monthly security patches to be far higher in number than before. The company cited its use of AI to help its employees uncover previously undiscovered security bugs in its software. "As AI helps defenders discover more issues, customers will see a higher volume of security updates included in each security release," said Windows boss Pavan Davuluri. As AI models become more advanced and focused on cybersecurity issues, security researchers are using them to uncover vulnerabilities that may have been dormant in software code for years, if not longer. Parts of Microsoft's Windows code dates back decades.
[2]
Microsoft's patch Tuesdays are about to get bigger
Windows 11 updates could soon include fixes for more security issues at once. Microsoft said in a blog post on Thursday that it's now using AI to "identify potential issues earlier," which means "customers will see a higher volume of security updates included in each security release." Hackers, even amateurs, have increasingly been using AI to quickly exploit security weaknesses over the past several months. Security researchers are also using AI to find issues faster, leading to more frequent high-severity vulnerabilities, like the "Copy Fail" exploit that impacted nearly every Linux distribution in May. Similarly, when Anthropic announced its Claude Mythos model earlier this year, it claimed that Mythos had already found high-severity vulnerabilities in "every major operating system." Microsoft says it's updating its Secure Development Lifecycle to make sure it "explicitly accounts for potential AI-enabled attack techniques and exploit paths." It's also making investments to "ensure that we are not compromising update quality as we gain speed," including integrating AI more throughout its security updates process. Additionally, Microsoft says it's "investing in new technology including Windows-specific tools and agentic harnesses" that will help generate and validate security fixes with AI, while "keeping humans in the loop when it comes to code review." Microsoft emphasized that while AI will now be more involved in identifying and resolving security issues, developers will still verify those findings and "make risk-based decisions" about updates.
[3]
Microsoft goes all in on new AI-powered Windows security strategy - what it means for you
Follow ZDNET: Add us as a preferred source on Google. ZDNET's key takeaways * Microsoft is accelerating its use of AI to detect vulnerabilities in Windows. * The new test routines have already deployed critical fixes to customers. * Enterprise admins should be prepared to see more fixes in each update. In the ongoing battle between the criminals who attack corporate networks and the engineers who defend them, one side has an unfair advantage. The bad guys can launch a thousand unsuccessful attacks without consequences, but if they succeed once, they can reap riches and create havoc. The good guys have to repel every attack. Adding AI to the mix makes the problem even worse, with attackers able to find new vulnerabilities and attack them at dramatically increased speed. The biggest target of all is Microsoft Windows, which runs on more than 1.5 billion PCs and servers worldwide. Also: 5 ways to fortify your network against the new speed of AI attacks To fight back, Microsoft is going all-in on an automated, AI-based process to find those vulnerabilities earlier, deliver them to engineers for review, and deliver updates faster. The details are in a new blog post from Pavan Davuluri, EVP of Microsoft's Windows + Devices division titled Evolving Windows vulnerability management to meet the speed of AI-powered discovery. The fastest way to reduce customer exposure is to find issues before attackers can use them. Windows is expanding its ability across the platform to find issues earlier, accelerate the engineering work to fix them, strengthen validation, and deliver timely, high-quality updates that keep customers protected. By applying AI across security analysis, we can identify patterns faster, prioritize risk, and scale vulnerability discovery across the Windows codebase. This helps reduce the time between discovery and customer protection. Davuluri said Microsoft Security has built dedicated cloud-based scanning and validation pipelines for MDASH, its "multi-model agentic scanning harness," to identify Windows vulnerabilities at scale, reduce false positives, and get high-confidence issues to engineers faster, shrinking the opportunity for malicious actors to launch zero-day attacks. Microsoft introduced MDASH in May, crediting the new tools with discovering 16 vulnerabilities, four of them rated Critical. All of them were patched in that month's security update. The new test framework (the "harness") was developed by the Microsoft Autonomous Code Security (ACS) team; the company said it "orchestrates more than 100 specialized AI agents across an ensemble of frontier and distilled models to discover, debate, and prove exploitable bugs end-to-end." Also: Microsoft's new Windows 11 recovery tool is the ultimate Undo button - how to enable it Those AI-powered tools are going to get involved much earlier in the development process, according to Microsoft: We continue to evolve our internal systems and practices so that vulnerability discovery is not treated as a separate activity, but as part of how we build, review and improve Windows before new features or updates are released. As a part of this we are updating our Secure Development Lifecycle (SDL) best practices to ensure our secure-by-design approach explicitly accounts for potential AI-enabled attack techniques and exploit paths. That means using AI to help identify potential issues earlier in the development process, while relying on human expertise to evaluate findings, make risk-based decisions and ensure fixes meet the quality bar customers expect. That promise to continue relying on human expertise is an important one. Whenever AI is involved at scale, there's a temptation to trust its results and skip over the necessary verification steps. And it's being introduced at a time when Microsoft is targeting some of its most experienced employees -- about 7% of the company's US-based workforce -- with a "voluntary retirement program." As longtime Microsoft watchers Todd Bishop and Kurt Schlosser noted last month, "For those staying behind, there's another worry: the loss of institutional knowledge and experience as so many longtime employees head for the door at once." Those security engineers who remain will have to cope with the increased workload without having some of their most experienced colleagues around to help. What does this new AI-powered pipeline mean for the humans responsible for maintaining Windows PCs? For starters, it means more issues fixed in each update. "Customers will see a higher volume of security updates included in each security release," Microsoft acknowledged. That will, unfortunately, increase the burden on enterprise customers to test updates before deploying them and monitor those updates afterward. If they see an issue during initial testing, Microsoft said, those admins can use a technology called Known Issue Rollback (KIR) to revert the change that caused the problem, rather than having to uninstall an entire update to get things running again. Also: You can soon restore Windows 11 from scratch even if it can't boot up - here's how That accelerated pace might incentivize some corporate customers to speed up their deployment of modern patching tools like Windows Autopatch in Microsoft Intune, which includes the ability to deliver hotpatch updates that don't require a reboot. Similar tools are available for applying security updates to Windows Servers, also without requiring a reboot. "As the pace of vulnerability discovery increases," Davuluri said, "customers shouldn't have to choose between speed and stability." That's a worthy goal, to be sure, but maintaining that balance means Microsoft's engineers and customers are going to have to move faster than ever to match the pace of those new AI tools.
[4]
Microsoft: Our AI-Powered Bug Hunting Means More Windows Security Patches
Expect more security patches to appear in future Windows updates as Microsoft harnesses AI to speed up the discovery of software bugs in the OS. "As AI helps defenders discover more issues, customers will see a higher volume of security updates included in each security release," Microsoft EVP Pavan Davuluri wrote in a blog post that's intended to shed light on how it's using powerful AI models to find and patch vulnerabilities, a growing trend across the tech industry. In Microsoft's case, the company has been using an AI system called MDASH, which can source from dozens of different specialized AI agents to find and validate software flaws. In May, Microsoft said MDASH helped it uncover 16 Windows vulnerabilities. Davuluri now says it has been running MDASH on the Windows codebase over "dedicated cloud infrastructure for scanning and proving." The automated pipeline is designed to eliminate false positives and refer the "highest-confidence findings" to the company's engineering team for review. Another goal is to use AI to discover problems earlier in the Windows development process, all the while relying on "human expertise to evaluate findings, make risk-based decisions and ensure fixes meet the quality bar customers expect," he says. "Our focus is to effectively utilize these AI tools to support faster protection, stronger engineering systems, and more actionable guidance for customers," Davuluri adds. Finding and patching software bugs more quickly is obviously good, especially amid signs that hackers are starting to embrace AI as well. The only problem is that Microsoft has a history of rolling out Windows updates with errors. As a result, consumers and businesses often hold off from updating, even though it could leave their PCs and IT systems vulnerable. In his blog post, Davuluri acknowledges the issue, saying, "as the pace of vulnerability discovery increases, customers shouldn't have to choose between speed and stability. Our job is to help customers stay protected while deploying updates with confidence. Windows will continue investing in the systems, engineering practices, and platform protections needed to reduce exposure responsibly at global scale." Microsoft's use of AI also represents a test of whether the technology can truly improve and streamline Windows' security, since AI-driven programming has faced criticism for making mistakes or creating shoddy code. Davuluri notes: "We're making the following investments to help ensure that we are not compromising update quality as we gain speed." The investments include validating the proposed Windows updates "across a range of testing environments, including the Security Update Validation Program (SUVP) and internal validation designed to help evaluate compatibility, reliability, and real-world usage scenarios." "We're also investing in new technology, including Windows-specific tools and agentic harnesses to enable end-to-end generation and validation of fixes using AI, keeping humans in the loop when it comes to code review," he added. Still, customers can report a problematic Windows update. Enterprise customers can also use the Known Issue Rollback function to rein in a bad, non-security component of a Windows update without fully uninstalling it, ensuring the patches remain in place. For consumers, Microsoft will use the rollback feature on Windows devices if a bad update is detected. "The most important guidance is to stay current and take security updates as soon as possible," Davuluri says. "Timely patching is one of the most effective ways to reduce exposure, especially as AI accelerates the speed at which vulnerabilities can be discovered and exploited."
[5]
Microsoft warns customers AI will mean busier Patch Tuesdays
Microsoft has warned customers to expect more security patches for the foreseeable future, thanks to AI. "As AI helps defenders discover more issues, customers will see a higher volume of security updates included in each security release," the company's executive veep for Windows + Devices, Pavan Davuluri, wrote in a Thursday post that describes how Microsoft is changing its internal processes to spot software vulnerabilities using AI. His post later points out that Microsoft offers many fine tools to automate patching, and his view that customers who use them will be able to keep pace with increased volumes of patches. Davuluri's post argues that investment in automated patching tools is justifiable and sensible because Microsoft's use of AI to deliver more patches improves overall security. "By applying AI across security analysis, we can identify patterns faster, prioritize risk and scale vulnerability discovery across the Windows codebase," he wrote. Sometimes that might mean Microsoft products contain fewer vulnerabilities. "We continue to evolve our internal systems and practices so that vulnerability discovery is not treated as a separate activity, but as part of how we build, review and improve Windows before new features or updates are released," he wrote. The post explains that Microsoft uses a tool called the multi-model agentic scanning harness (MDASH), which apparently "utilizes multiple models including leading third-party AI vulnerability discovery models." "To run MDASH at Windows scale, Windows set up dedicated cloud infrastructure for scanning and proving," Davuluri wrote. "A scanner pipeline scans critical binaries and validates candidates using multi-model debate across multiple model families. Confirmed candidates then flow to a separate, Windows-specific prove pipeline that helps eliminate remaining false positives, so only the highest-confidence findings reach the engineering team." The executive veep said that process "handle a larger volume of potential vulnerabilities and shortens the review window for new ones, shrinking the attack window for zero-day exploits." Microsoft is not alone in using AI to deliver more patches: Oracle recently announced AI bug-finders mean it will add a monthly critical patch dump to its current quarterly security update service. It's hard to argue against vendors finding and fixing more flaws, and perhaps over time AI will mean their products contain fewer vulnerabilities that need a fix. However, The Register is yet to hear of AI being used to create more or longer change windows that admins can use to implement all these extra patches. ®
[6]
Microsoft's big cybersecurity plan means more security updates for your Windows machine
* Microsoft uses AI to speed up discovery and patching of Windows security issues. * AI-assisted detection means more and larger security updates per Windows release. * AI partners with engineers to deliver faster, stronger protections and guidance to customers. When we think about AI usage, we usually think of something along the lines of ChatGPT, where people can get news, generate images, and even code with a simple prompt. However, in the world of cybersecurity, there's an arms race between the people using AI to quickly generate malicious apps and viruses and those using it to defend others. With Microsoft firmly in the latter category, the company has posted a blog post detailing how it'll utilize AI to keep Windows users safe. And one particularly interesting nugget reveals that we may see bigger, tougher security updates as Microsoft's AI spots more problems than ever before. Microsoft lays out its big AI plan to protect its Windows users The company is spotting issues quicker than it used to Over on the Windows blogs, Microsoft digs deep into how it's using AI for cybersecurity. It says that its AI models will aid in the production of security patches, from discovery to development and all the way to deployment. It doesn't seem like Microsoft is just going to sic an AI on Windows and let it run rampant; instead, the AI will work alongside engineers to help them solve problems faster. Within the article is this interesting tidbit: As AI helps defenders discover more issues, customers will see a higher volume of security updates included in each security release. This is evidence that defenders are getting better at identifying and addressing issues. Our focus is to effectively utilize these AI tools to support faster protection, stronger engineering systems and more actionable guidance for customers. Microsoft explains how it'll achieve this in its blog post, but as for what you, as a Windows user, can expect, you can look forward to a more robust and secure system as the company speeds up flaw recognition and patching.
[7]
Microsoft expects more Windows security updates from AI-discovered flaws
Microsoft says Windows users should expect to see an increase in security updates as the company increasingly relies on artificial intelligence to discover vulnerabilities in its codebase. In a blog post published today, Microsoft said advances in AI have significantly accelerated vulnerability discovery, allowing engineers to identify more security issues before they can be exploited in zero-day attacks. "The pace of vulnerability discovery is changing with advances in AI making it possible to find more issues, faster, across more code, with new mechanisms that can accelerate both discovery and analysis," Microsoft said. As part of this approach, the company is using Microsoft Security's multi-model agentic scanning harness (MDASH), an AI-powered vulnerability discovery system previously detailed by Microsoft, which scans critical binaries and validates potential vulnerabilities using multiple AI models. Microsoft says the system scans critical Windows binaries for vulnerabilities and then validates the findings using multiple AI models. Vulnerability candidates are then passed through a second Windows-specific validation pipeline designed to eliminate false positives before engineers investigate the issues. The company says it is also using AI to help engineers understand failures more quickly, suggest possible bug fixes, and identify similar bugs elsewhere in the Windows source code. However, Microsoft says human engineers will still oversee and review all proposed code and validate fixes before they are released into production. Microsoft says the increased use of AI for vulnerability discovery means customers are likely to see more security updates to address newly discovered vulnerabilities in each monthly Patch Tuesday release. "As AI helps defenders discover more issues, customers will see a higher volume of security updates included in each security release," says Microsoft. Artificial intelligence is used not only to find and fix vulnerabilities but also by threat actors to power their attacks and exploit zero-day flaws before they are fixed. Due to this, Microsoft also announced today that it is updating its Secure Development Lifecycle (SDL) practices to account for AI-enabled attack techniques and to use AI earlier in the software development process to identify security issues before features are released. This announcement comes two days after Reuters reported that the U.S. Cybersecurity and Infrastructure Security Agency (CISA) has begun using Anthropic's Fable AI model to scan government software for vulnerabilities that cybercriminals or foreign intelligence services could exploit. According to the report, the AI-assisted code audits have already uncovered numerous vulnerabilities, though officials did not disclose how many or provide details on their severity.
[8]
Microsoft's record Patch Tuesday: AI found the bugs
Microsoft's July Patch Tuesday fixed a record 622 flaws, and the company says AI is finding bugs faster than ever. Two were already under attack. Microsoft has never shipped a bigger security update. Its July Patch Tuesday fixed a record haul of flaws, and the company says AI is why the count keeps climbing. The scale is hard to ignore. By Microsoft's own count, the update patched 622 vulnerabilities. That more than tripled June's tally, which had set a record of its own. Krebs on Security, which first reported the release, put the figure at 570. Another 428 Chromium bugs in Edge sit on top. Three zero-days, two under attack Fifty-eight of the flaws count as critical. Three are zero-days, which means they were public or exploited before a fix existed. Two of those are already in active use. The first, CVE-2026-56155, lets an attacker raise their privileges through Active Directory Federation Services, the system that signs a network's logins. The second, CVE-2026-56164, does the same through on-premises SharePoint. Neither carries a scary severity score. Attackers are using both anyway. That is the real lesson. CISA has added both to its known-exploited list and told federal agencies to patch within days. The third zero-day, a BitLocker bypass, needs physical access, so it is less urgent. AI is writing the patch notes Microsoft is blunt about the cause. In a blog post a week earlier, Windows chief Pavan Davuluri warned customers to expect "a higher volume of security updates" as AI helps find more bugs, faster. The tools are doing the digging. Microsoft's own scanner, MDASH, found 16 of May's flaws by itself. Anthropic's Mythos model has been credited with a surge of fixes across the industry. The monthly count has risen with them, from 79 in March to 206 in June to 622 now. It fits a wider theme. OpenAI recently showed off an in-house AI hacker that hunts flaws in its own models. The same tools help attackers There is a catch. Once a patch ships, attackers can compare it with the old code, spot the hole it plugs, and build an exploit within hours. The old habit of waiting a week to patch is fading. It also breaks how teams triage. When a release carries 600 flaws and dozens rate critical, the label stops sorting anything. This month's two exploited bugs prove it. Both score mid-tier, and both are in use. Teams are already stretched. Benchmarks built to measure AI's hacking skills keep getting saturated, and researchers keep tricking coding assistants into unsafe behaviour. A rocky rollout The update has not been smooth. Microsoft paused the rollout for some Dell devices with Intel chips, after reports of sudden shutdowns, overheating, and battery drain. A fix is due within days. For everyone else, the advice is the same as ever, only more urgent. Sort by what is being exploited, not by the number on the box. And patch faster than you used to.
[9]
Microsoft says stop waiting to install Windows updates. Here's why
Microsoft patched a record 206 vulnerabilities in June and uses its own AI tool MDASH to identify security flaws in Windows code. Microsoft has flipped its stance regarding the installation of Windows updates. You should now install these updates on your Windows computers as soon as possible. The reason for this change in recommendation? AI. With rampant adoption and use of AI, hackers can now detect and exploit security vulnerabilities in unpatched Windows PCs to a degree never before seen. In the run-up to July's Patch Tuesday, Jeremy Chapman, a director at Microsoft 365, stated that no one should delay Windows updates for longer than three days, reports Windows Latest: "We've updated our recommendations for deploying Windows updates to less than three days as the deferral period for quality updates [...] setting deadlines for those updates to zero or one day, and the update grace period to a maximum of two days." Even as hackers ramp up exploitation of vulnerabilities, Microsoft has been fixing them at a faster pace. For example, in June, Microsoft patched a record 206 vulnerabilities. All of this makes Patch Tuesday updates more important than ever -- you don't want to skip any of these security patches for your PC. As soon as a security vulnerability becomes public knowledge, AI can help attackers analyze the problem and develop an exploit within a matter of hours. That's why the previously common practice of postponing installation of updates by several days or weeks -- to wait and see whether the updates cause issues and render systems unstable -- is no longer smart. Microsoft no longer wants companies and users to leave Windows PCs unpatched for weeks on end. Fortunately, hackers aren't the only ones employing AI in cybersecurity. Microsoft has developed its own AI-based tool for finding latent vulnerabilities: MDASH, which scans Windows code for suspicious patterns. Then, all AI agents in the system communicate with one another to diagnose actual problems. Tip: Whether you keep your Windows up to date, you need proper antivirus protections if you want your PC to remain secure and private. Check out our picks for the best antivirus software for Windows as well as best VPN services to stay ahead of security problems.
[10]
Microsoft is now using AI to fix Windows bugs before hackers exploit them
Microsoft's updated secure software development model aims to stay ahead of evolving AI-powered threats while strengthening Windows security infrastructure. Microsoft just announced via a Windows Experience blog post that the company is now using AI to identify potential security issues in Windows earlier in the development process. According to the company, this will result in a greater number of security updates included in each month's security release, also known as "Patch Tuesdays." The story was first reported by The Verge. The context for this is that both security researchers and cybercriminals are increasingly using AI to find and exploit vulnerabilities in all kinds of software, including operating systems like Windows. This sudden spike in AI-driven exploits and security has contributed to serious security flaws being detected more quickly and more frequently. As part of this change, Microsoft is also updating its secure software development model to better account for AI-driven attack methods. At the same time, Microsoft emphasizes that AI won't replace its developers. Humans will continue to review code, verify AI findings, and make decisions on which security updates to deploy. Further reading: Free ways to make your Windows PC harder to hack By the way: If you're using Windows 11 Home, you're missing out on the many benefits of Windows 11 Pro. To learn more, see our comparison of Windows 11 Home and Pro. If you want to upgrade, snag it for cheap in the PCWorld Software Store: now just $59 instead of $99.
[11]
Latest Microsoft Patch Tuesday updates stamp out a record 622 security vulnerabilities, as the company's AI-enhanced bug hunt looks to bear fruit
As much as AI has its drawbacks, it'd be wrong to say it doesn't have its uses. Case in point, Microsoft's previous commitment to leverage AI vulnerability detection in Windows security updates looks to be bearing fruit, as the latest Patch Tuesday release fixes an astonishing 622 CVEs across its products. Which is a new record, according to The Register, more than tripling the previous 206 CVE figure. Over 500 of those security fixes are Windows-related, including a fix for a zero-day vulnerability in Windows BitLocker, possibly related to exploits uncovered by security researcher Nightmare-Eclipse earlier this year. The new cumulative update for Windows 11 is entitled KB5101650, and it's not just CVE issues that receive a tune-up. The update also patches a nasty little bug that could potentially take up 500 GB of your storage space unnecessarily, related to a file within the Capability Access Manager. The feature is responsible for Windows 11 app permissions, but a file entitled "CapabilityAccessManager.db-wal" could potentially balloon in size, taking up precious storage space amid the current SSD and memory crisis -- which is unfortunate timing. Anyway, the bug is reportedly squashed, so we can all sleep easy in our beds tonight. KB5101650 also allows users to defer Windows updates to a specific day with a 35-day period, which is an Insider feature that now looks to be rolling out to all Windows 11 PCs. Windows Latest has experimented with delaying further than the 35-day limit, and found that you can un-pause and then re-pause an update for as long as you want. Which might come in handy, if anything particularly system-breaking comes up. Speaking of which, Microsoft warns that "This update might not be available for a limited number of Dell devices with Intel processors," which is apparently down to an incompatibility issue that can "potentially cause unexpected shutdowns, poor performance, increased heat, and battery drain." "We are working together with Dell to prevent the affected models from experiencing the issue and plan to release a resolution for affected devices in the coming days," says MS. Well, it couldn't all be good news, could it?
[12]
Microsoft Ships Record July Patch Tuesday with 570 Security Fixes and Three Zero-Days
Microsoft has released its July 2026 Patch Tuesday security updates for Windows 10 and Windows 11, setting a new company record by addressing 570 documented vulnerabilities in a single monthly release. The update significantly surpasses June's already record-setting release and reflects Microsoft's growing use of AI-assisted vulnerability discovery to identify weaknesses across the Windows ecosystem before they can be exploited. Among the vulnerabilities addressed are three zero-day flaws, two of which were actively exploited before patches became available. The affected components include Active Directory Federation Services (CVE-2026-56155), SharePoint Server (CVE-2026-56164), and Windows BitLocker (CVE-2026-50661). The Active Directory Federation Services and SharePoint vulnerabilities have already been observed in real-world attacks, making them high-priority updates for enterprise administrators. The overall breakdown illustrates the scale of this month's security release. Microsoft corrected 254 elevation-of-privilege vulnerabilities, 145 remote code execution flaws, 102 information disclosure vulnerabilities, 35 denial-of-service vulnerabilities, 17 security feature bypass issues, and 16 spoofing vulnerabilities. A total of 59 vulnerabilities are classified as Critical, many of which involve remote code execution. Microsoft attributes part of the increase in discovered vulnerabilities to its expanding use of AI-powered analysis during internal security reviews. Rather than indicating Windows has suddenly become less secure, the larger number reflects improved detection capabilities capable of identifying more flaws before malicious actors discover them. The company has stated that AI is expected to play an even larger role in future security development. The cumulative update also includes several Windows 11 improvements outside security. New features include Point-in-Time Restore, allowing users to restore applications, settings, files, and system state to an earlier point, additional Widget customization options, refinements to the Magnifier accessibility feature, and improved Bluetooth compatibility for selected devices. For enterprise environments, this month's update presents a familiar challenge. While administrators typically validate large cumulative updates before broad deployment to avoid compatibility issues, the presence of two actively exploited zero-days substantially raises the urgency of patching internet-facing infrastructure and authentication services. Home users are encouraged to install the cumulative update through Windows Update as soon as it becomes available. Unlike many previous Patch Tuesday releases, July 2026 stands out not only because of the sheer number of vulnerabilities resolved, but also because it highlights Microsoft's increasing reliance on AI-assisted security research to identify vulnerabilities before attackers can weaponize them. Source: Microsoft Security Response Center.
[13]
Microsoft just offered 570 critical security fixes -- is your PC getting them?
Sara Heritage is a tech and gaming journalist, who's currently making her way up to Master Ball rank in Pokemon Champions. Bylines in IGN, GAMINGbible, The Gamer and more. You can usually find her tinkering with tech, or restoring old consoles, always with one of her 3 cats nearby. Come and talk with her over on Twitter @SHeritageJourno. * July 2026 Patch: 570 security fixes -- a 316% jump; install now to block AI-driven attacks * Check Windows Update and your build (25H2: 26200.8875; 24H2: 26100.8875; 23H2: KB5099414). * Microsoft's MDASH found many flaws fast; install patches ASAP - Dell Intel models may be delayed. Microsoft just dropped its July 2026 Patch Tuesday update, and this single release addresses a staggering 570 security vulnerabilities. To put that in perspective, that's a 316% increase over July 2025 and nearly three times the update we received just last month. So, why so many bugs? Is Windows totally broken? It's actually thanks to the explosion of bad actors using AI to hack into your system, which is why this is one Windows update you won't want to delay. How to make sure you get these critical updates Here's how to check. If you're running Windows 11, you should check whether you've received all 570 fixes. To do so, head to Settings > System > About, then scroll to Windows specs and look for your OS build number. * For Windows 11 25H2: You should be on Build 26200.8875 (via update KB5101650). * For Windows 11 24H2: You should be on Build 26100.8875 (via update KB5101650). * For Windows 11 23H2: Your update is KB5099414 (Build 22631.7376). If your build number doesn't match, go to Settings > Windows Update and hit 'Check for updates.' It's the age-old IT trick - if you see nothing, try turning your PC off, then on again. If that doesn't work, run the Windows Update Troubleshooter. Still stuck? Time to bug Microsoft Support, and considering the scale of this update, it's important that you do. Not everyone will get this new protection Bad news for Dell users This update might not be available for a limited number of Dell devices with Intel processors due to an incompatibility reported by Dell that can potentially cause unexpected shutdowns, poor performance, increased heat, and battery drain. Microsoft is working with Dell to prevent the affected models from experiencing the issue and plans to release a resolution for them in the coming days. So if you don't see these updates on your computer, and you use a Dell device, that could be why. Windows protection against AI threats goes one step further MDASH is Microsoft's new bet against malicious actors Microsoft recently announced its own AI system, known as MDASH, to proactively hunt and resolve bugs before attackers can exploit them. MDASH works by having multiple AI agents "debate" to find the root cause of potential issues. While this system is incredibly effective at identifying flaws, the result is that your monthly updates are now massive, containing hundreds of fixes that were found and patched in a fraction of the usual time. Think of these updates like brushing your teeth -- just do it. Still rocking Windows 10 or something older? You've got an extra year thanks to Microsoft extending its support, but it won't stick around forever. Grab any available security patches, and if your device is nearing end of support, consider upgrading or finding other ways to stay safe.
[14]
Microsoft Warns AI Is Supercharging Cyberattacks -- Here's What Businesses Must Do to Stay Safe
"By applying AI across security analysis, we can identify patterns faster, prioritize risk and scale vulnerability discovery across the Windows codebase," Davuluri wrote, noting that those capabilities help "reduce the time between discovery and customer protection." One of the tools Windows is employing is called MDASH, or Microsoft Security's multi-model agentic scanning harness. Launched in May of this year, it's a system that uses more than 100 AI agents and numerous "frontier and distilled" AI models to "discover, debate, and prove exploitable bugs end-to-end," according to Microsoft. Alongside MDASH, Davuluri's division, which includes Windows operating systems and affiliated hardware, also partners up with risk teams across the entirety of Microsoft. Davuluri also noted that his team has baked vulnerability discovery into the process of building new features or software updates. That helps with identifying possible issues and improving them before they ever go out to the public. The team has also begun accounting for AI-enabled cyberattacks white developing new features or updates.
[15]
Your Windows security updates are about to get a lot bigger (and that's good news)
Sara Heritage is a tech and gaming journalist, who's currently making her way up to Master Ball rank in Pokemon Champions. Bylines in IGN, GAMINGbible, The Gamer and more. You can usually find her tinkering with tech, or restoring old consoles, always with one of her 3 cats nearby. Come and talk with her over on Twitter @SHeritageJourno. * Windows updates will be more frequent and AI-driven to find and fix vulnerabilities faster. * Updates install automatically in the background; Known Issue Rollback helps revert bad patches safely. * AI prioritizes and scans at scale, shrinking hackers' window -- keeps your device updated promptly. Your Windows security updates are about to get bigger, and a lot more common, but it's definitely not a bad thing. Windows is expanding its ability across the platform to detect issues earlier, powered by AI. For everyday Windows users, Microsoft's latest security, this latest update means your device is now better protected against cyber threats, often without you having to lift a finger. Thanks to its AI technology, Windows can identify and fix security problems faster than ever before, shrinking the window of opportunity for hackers. What's changing behind the scenes? AI has changed the game Traditionally, finding security vulnerabilities -- those hidden weaknesses hackers exploit -- was a slow process. Especially with the widespread use of AI, it's easier than ever for hackers to access your personal data. Microsoft believes that the fastest way to reduce your exposure is to find issues before attackers can use them. To do this, Windows is expanding its ability across the platform to find issues earlier, accelerate the engineering work to fix them, strengthen validation, and deliver timely, high-quality updates that keep you protected. Microsoft uses AI systems like MDASH, its advanced AI tool that scans Windows for security issues. It means it can scan your Windows operating system for issues at a pace and scale that humans could never achieve. These AI-powered scans quickly spot patterns and potential problems, allowing Microsoft to patch vulnerabilities before criminals can exploit them. In practice, when a new bug or weakness appears, Microsoft's AI helps prioritize which ones are most dangerous and should be fixed first. This means Windows updates are now more frequent, but these updates are a positive sign: they show that Microsoft's defenses are catching threats faster. What does this mean for you? Good news, updates will be automatic. The result for most people is a safer Windows experience with a lower risk of being hit by malware, ransomware, or other cyberattacks. Updates may come more often, but they're designed to install smoothly in the background. Microsoft also uses technology like Known Issue Rollback (KIR) so if a security update causes a problem, your computer can quickly revert to its previous, stable state -- all without losing protection. Microsoft is also investing in new technology, including Windows-specific tools and agentic harnesses to enable end-to-end generation and validation of fixes using AI, keeping humans in the loop when it comes to code review. The bottom line is that AI is transforming how Windows secures your PC, making it much harder for hackers to sneak in. For most users, this means stronger protection and less hassle. The most important guidance is to stay current and take security updates as soon as possible. Timely patching is one of the most effective ways to reduce exposure, especially as AI accelerates the speed at which vulnerabilities can be discovered and exploited.
[16]
Microsoft's Gigantic AI-Fueled Bug Disclosure Signals New Era For Security: MSP Execs
The record-breaking Patch Tuesday release -- which may cover more than 600 CVEs (Common Vulnerabilities and Exposures) in total -- shows that the era of 'AI against human is done,' one MSP executive tells CRN. Microsoft's unprecedented July security update -- which potentially includes patches for more than 600 vulnerabilities -- is confirmation that ultra-powerful AI models for discovering software flaws are already starting to signal massively bigger challenges in vulnerability management, according to MSP executives. For months, the industry has been watching for indicators that vulnerability discovery capabilities from frontier AI models such as Anthropic's Claude Mythos would lead to increased CVEs (Common Vulnerabilities and Exposures). While some hints of this had surfaced previously, the hundreds of CVEs that received software patches Tuesday as part of Microsoft's monthly release of software bug fixes is the clearest sign of this yet, MSP executives told CRN. [Related: Why Frontier AI Models Are Creating A Vulnerability 'Storm': Apiiro CEO] Estimates of the number of vulnerabilities disclosed by Microsoft during the release, colloquially known as "Patch Tuesday," have varied but could be above 600, according to TrendAI's Zero Day Initiative. Dustin Childs, head of threat awareness at TrendAI, counted 621 new Microsoft CVEs for the July security update. "The bug apocalypse has fully descended upon us," Childs wrote in a post. By comparison, Microsoft's June release had covered 206 CVEs, which had itself been the record at the time. Prior Patch Tuesday releases from Microsoft, including as recently as earlier this year, often did not exceed 100 CVEs for the month. The number of Microsoft products receiving patches in the July release is also "astonishing," Childs wrote, and it's notable that 63 of the CVEs are rated "critical" in terms of severity, as well. Just two of the vulnerabilities are listed as under active exploitation, however, he noted. Microsoft has been among the tech industry vendors that have received access to Anthropic's Claude Mythos model for the purposes of proactively discovering vulnerabilities in its own products, as part of the Project Glasswing initiative announced in April. Similarly, OpenAI has provided Microsoft with access to its frontier AI vulnerability-discovery models through its Trusted Access for Cyber initiative. Speaking with CRN Tuesday, MSP executives said that there should be little doubt that AI is the biggest factor that has changed in discovery of vulnerabilities in Microsoft products. Without question, "this is being driven by the more powerful models being readily available," said Travis Woods, strategic executive advisor at Fort Point IT, a Novato, Calif.-based MSP. "It's obviously accelerating the defensive stance that folks are having to take. And it's AI against AI. Because AI against human is done." For IT and security teams, the huge number of vulnerabilities will make it more essential than ever to prioritize effectively around which patches to deploy first, executives said. "It really changes the way that we approach patching and security," Woods said. "The priority of the CVE is not enough information to make a good determination of what gets patched first." Ultimately, "we're going to have to pull in more ancillary data to help prioritize what's first," he said. While the first priority should always be to address vulnerabilities that are being actively exploited, MSPs will then need to evaluate which of the remaining flaws pose meaningful risks within a given customer's environment, according to Zack Finstad, vice president of cybersecurity at Logically, No. 332 on CRN's Solution Provider 500 for 2026. And organizations will also have to become more comfortable with the fact that not all vulnerabilities will be able to be addressed right away, Finstad said. The key for many organizations and MSPs will be "how to evaluate the risk associated with not dealing with [CVEs] right away," he said. The massive scale of the release also suggests that organizations could face difficult decisions about whether to shorten the testing traditionally performed before patches are deployed to customer systems, Finstad said. "We may not have the time to do the diligence that we've always done -- testing and validating on our own systems, in our labs, before rolling out to customers," he said. "We may just have to buckle down, patch and deal with the fallout that comes out afterwards." At the same time, the disproportionately modest number of known exploited vulnerabilities disclosed Tuesday means the industry is not seeing an immediate surge in attacks from the increased bug discovery activity at this point, Finstad noted. However, many experts believe that it's only a matter of time before threat actors will have access to similarly potent AI capabilities for vulnerability discovery and exploitation -- if they don't already. A key question will increasingly be, "how do we protect ourselves against [threat actors'] ability to use tools that we also have access to?" Finstad said. All in all, the developments mean that patching will less and less be about processing a monthly list of vulnerabilities, and more about continuously determining which risks matter most for each customer, Woods said. "We can still only patch so much," he said.
Share
Copy Link
Microsoft released patches for a record 570 security flaws, crediting its AI-powered MDASH system for the surge in discoveries. At least two zero-day vulnerabilities were actively exploited, including a privilege escalation flaw in Windows Server and a SharePoint bug flagged by CISA. The company warns customers to expect higher volumes of security updates as AI accelerates vulnerability detection.
Microsoft released patches for a record number of security vulnerabilities this week, fixing 570 flaws across Windows, Office, and other product lines during its monthly Patch Tuesday update
1
. The technology giant attributes this unprecedented volume to its deployment of Microsoft AI systems designed to accelerate the discovery of security vulnerabilities hidden within its codebase. At least two of the patched issues are classified as zero-day vulnerabilities that hackers actively exploited before the company became aware of them1
.One critical bug affects Windows Server, allowing attackers to execute a privilege escalation flaw that converts limited user access into full system administrator control. Another vulnerability targets the SharePoint file sharing server, prompting CISA to issue warnings about active exploitation attempts against organizations
1
. These zero-day exploits underscore the urgent need for AI-driven vulnerability discovery as cyber threats evolve at accelerating speeds.
Source: ZDNet
The surge in discovered flaws stems from Microsoft's deployment of MDASH, its multi-model agentic scanning harness that orchestrates more than 100 specialized AI agents across multiple frontier models
3
. Developed by the Microsoft Autonomous Code Security team, MDASH enables AI-powered bug hunting by having AI agents discover, debate, and validate exploitable bugs end-to-end3
. The system runs on dedicated cloud infrastructure designed to scan critical binaries, eliminate false positives, and deliver only the highest-confidence findings to engineering teams for code review4
.In May, MDASH helped uncover 16 Windows vulnerabilities, four rated as Critical, all of which were patched in that month's security update
3
. Windows boss Pavan Davuluri explained that "as AI helps defenders discover more issues, customers will see a higher volume of security updates included in each security release"1
. This AI-driven vulnerability discovery approach identifies patterns faster, prioritizes risk, and scales detection across the Windows codebase, which contains code dating back decades1
.Microsoft is integrating its AI-powered Windows security strategy throughout its development processes, updating its Secure Development Lifecycle to explicitly account for potential AI-enabled attack techniques and exploit paths
2
. The company emphasizes that vulnerability discovery will no longer be treated as a separate activity but embedded into how Windows is built, reviewed, and improved before new features or updates are released3
.Despite the increased automation, Microsoft maintains that human oversight remains central to its approach. Developers continue to verify AI findings, make risk-based decisions about updates, and ensure fixes meet quality standards customers expect
2
. The company is investing in Windows-specific tools and agentic harnesses to enable end-to-end generation and validation of fixes using AI while keeping humans in the loop for code review4
.Related Stories
The shift toward AI-driven vulnerability discovery means enterprise administrators should prepare for significantly higher volumes of Windows security patches in each update cycle
3
. This increase creates additional testing and deployment burdens for IT teams responsible for maintaining Windows installations across more than 1.5 billion PCs and servers worldwide3
. Microsoft acknowledges this challenge, stating that "as the pace of vulnerability discovery increases, customers shouldn't have to choose between speed and stability"4
.
Source: The Register
To address quality concerns, Microsoft is validating proposed updates across testing environments including the Security Update Validation Program and internal validation designed to evaluate compatibility, reliability, and real-world usage scenarios
4
. Enterprise customers can use Known Issue Rollback functionality to revert problematic non-security components without fully uninstalling patches, ensuring critical security fixes remain in place3
.
Source: Guru3D
Microsoft's approach reflects a broader industry trend as both attackers and defenders harness AI capabilities. Hackers have increasingly used AI to quickly exploit security weaknesses in recent months, while security researchers employ AI to find issues faster
2
. When Anthropic announced its Claude Mythos model earlier this year, it claimed the system had already found high-severity vulnerabilities in every major operating system2
. Oracle recently announced similar plans to add monthly critical patch releases to its quarterly security update service, citing AI bug-finders as the driver5
.Davuluri emphasizes that timely patching remains one of the most effective ways to reduce exposure, especially as AI accelerates the speed at which vulnerabilities can be discovered and exploited
4
. As AI models become more advanced and focused on cybersecurity issues, they continue uncovering vulnerabilities that may have been dormant in software code for years1
.Summarized by
Navi
[2]
[5]
10 Jun 2026•Technology

29 Jul 2026•Technology

13 May 2026•Technology

1
Technology

2
Technology

3
Science and Research
