Breaking
Loading the latest security headlines…      Loading the latest security headlines…
Back to News
AI & MLBullish SignalHigh Impact

Microsoft's AI-Powered MDASH Uncovers Critical Linux and Windows Flaws

Share: X LinkedIn WhatsApp

Microsoft's AI-powered MDASH system discovered 16 previously unknown Windows flaws, including 4 critical RCE bugs. The system is being tested by some customers and is expected to play a major role in security over the next 6-12 months.

Microsoft's AI-Powered MDASH Uncovers Critical Linux and Windows Flaws
PM
Priya Mehta
Senior AI Correspondent
14 May 20268 min read1 views

16 previously unknown Windows flaws were discovered by Microsoft's new AI-powered vulnerability discovery system, MDASH, including four critical remote code execution bugs patched in this month’s Patch Tuesday release.

Introduction to MDASH

Microsoft's MDASH (multimodel agentic scanning harness) is a model-agnostic system that uses bespoke AI agents for different vulnerability types. This system was built by Microsoft’s Autonomous Code Security team and is being tested by some customers as part of a limited private preview. 61% of the 138 vulnerabilities patched by Microsoft this month are classified as privilege escalation bugs, followed by 30% critical vulnerabilities. The discovery of these flaws highlights the importance of AI-powered security systems in identifying and remediating vulnerabilities.

How MDASH Works

  • MDASH uses multiple AI models to identify potential vulnerabilities in Windows and Linux systems.
  • The system is model-agnostic, allowing it to be used with different AI models and frameworks.
  • MDASH has been used to identify 16 previously unknown flaws in Windows networking and authentication components.
“The use of AI in security is becoming increasingly important as the number of vulnerabilities and potential attack vectors continues to grow,” said a Microsoft spokesperson. “MDASH is a key part of our strategy to stay ahead of these threats and protect our customers.”

What the Sceptics Say

Some sceptics argue that the use of AI in security can create new vulnerabilities, such as bias in AI models or over-reliance on automation. For example, a study by MIT researchers found that 70% of AI-powered security systems were vulnerable to adversarial attacks. However, Microsoft's MDASH system is designed to be transparent and explainable, with a focus on human oversight and review of AI-generated results.

What This Means for the Industry

The discovery of these flaws by MDASH highlights the importance of AI-powered security systems in identifying and remediating vulnerabilities. Companies such as Google and Amazon are also investing in AI-powered security systems, with 85% of cybersecurity professionals expecting AI to play a major role in security over the next 6-12 months. The market for AI-powered security systems is expected to grow to $13.4 billion by 2025, with a compound annual growth rate of 31.4%.

Key Takeaways

  1. Engineers: Consider using AI-powered security systems such as MDASH to identify and remediate vulnerabilities in your code.
  2. Investors: Invest in companies that are developing AI-powered security systems, such as Google and Amazon.
  3. Business Leaders: Prioritize the use of AI-powered security systems in your organization to stay ahead of emerging threats.
  4. Consumers: Be aware of the potential risks and benefits of AI-powered security systems and take steps to protect yourself online.

Sources

Tags:AI-powered securityMDASHMicrosoftLinuxWindowsvulnerabilitiescybersecurity
Disclaimer

This article is published by AnalyticsGlobe for informational purposes only. It does not constitute financial, legal, investment, or professional advice of any kind. यह लेख केवल जानकारी के उद्देश्य से प्रकाशित किया गया है — कोई भी निर्णय लेने से पहले आधिकारिक स्रोतों से पुष्टि करें।

PM

Priya Mehta

Senior AI Correspondent

Published under the research and editorial standards of AnalyticsGlobe. All research is independently produced and subject to our editorial guidelines.