Microsoft's New AI System Discovers 16 Unknown Windows Vulnerabilities, Including 4 Critical Flaws Now Patched
Summary
Microsoft's AI-driven vulnerability system MDASH has discovered 16 previously unknown Windows flaws, including four critical remote code execution vulnerabilities now patched, using over 100 specialized AI agents to scan source code and top a major cybersecurity benchmark.
Key Points
- Microsoft unveils MDASH, a new AI-driven vulnerability discovery system that identifies 16 previously unknown Windows flaws, including four critical remote code execution vulnerabilities now patched in the May 12 Patch Tuesday release.
- MDASH orchestrates over 100 specialized AI agents across multiple models to scan source code, validate findings, and reproduce vulnerabilities, achieving an 88.45% score on the public CyberGym benchmark and topping its leaderboard.
- Security analysts warn that AI-versus-AI vulnerability discovery is accelerating, urging enterprises to seek early access to systems like MDASH while cautioning that benchmark performance does not guarantee enterprise readiness without strong remediation governance.