Skip to content

Start typing to find articles and guides.

Your cart is empty

AI

Microsoft's AI-Powered Patch Tuesday: 570 Vulnerabilities and a New Era in Cybersecurity

Microsoft's 570-vulnerability Patch Tuesday isn't a crisis — it's the new normal, and every enterprise that still treats patching as a monthly ritual rather than a continuous, AI-assisted operation is already

TL;DR 

  • 570 vulnerabilities disclosed — the largest Patch Tuesday in history, nearly triple the previous record of 206 set in June 2026.
  • AI did the finding: Microsoft deployed MDASH (Multi-Model Agentic Scanning Harness), powered by Anthropic's Claude Mythos and OpenAI's models, to scan decades-old Windows code — and it surfaced bugs human reviewers had missed for years.
  • 3 zero-days: Two actively exploited in the wild (AD Federation Services and SharePoint Server privilege escalations), plus a publicly disclosed BitLocker bypass. CISA issued an emergency directive on the SharePoint flaw.
  • 59 critical-rated flaws spanning Exchange Server, Microsoft Copilot, Defender, SharePoint, SQL Server, and Hyper-V — many carrying CVSS scores above 9.0.
  • Dell/Intel collateral damage: Updates caused overheating and shutdowns on certain Dell devices, forcing Microsoft to pause patches for affected hardware.
  • Industry verdict: "AI against human is done" — the monthly patching model built for human-discovered bugs is breaking under the weight of AI-driven discovery.
  • Microsoft's warning: This is not a one-off. The company signalled that AI-assisted vulnerability discovery is now standard operating procedure, and future Patch Tuesdays will reflect the same scale.

Executive Summary

On 14 July 2026, Microsoft released the largest Patch Tuesday in its history, fixing 570 security vulnerabilities across Windows, Office, SharePoint, Exchange, SQL Server, Azure, and dozens of other product lines. The update — nearly triple June's previous record of 206 flaws — was explicitly attributed to AI-powered vulnerability discovery systems deployed across Microsoft's codebase. The event marks a paradigm shift: AI is no longer a future consideration in cybersecurity; it is the primary engine of vulnerability detection at scale.


The Numbers

Metric

July 2026

June 2026

July 2025

Total CVEs patched

570

206

137

Critical vulnerabilities

59

Zero-days (actively exploited)

2

Zero-days (publicly disclosed)

1

Elevation of Privilege

254

Remote Code Execution

145

Information Disclosure

102

Denial of Service

35

Security Feature Bypass

17

Spoofing

16

Note: The 570 figure excludes additional patches for Mariner, Azure OpenAI, M365 Copilot, Exchange Online, and 468 Chromium/Edge flaws fixed separately. Trend Micro's Zero Day Initiative counted 621 new Microsoft CVEs when including all sources.


The AI Engine Behind the Surge

MDASH: Multi-Model Agentic Scanning Harness

Microsoft deployed an internal system called MDASH (Multi-Model Agentic Scanning Harness) to scan its Windows codebase — some of which dates back decades — for previously undiscovered vulnerabilities. The system leverages multiple frontier AI models working in concert to identify patterns indicative of security flaws.

Frontier Model Access

Microsoft's AI-driven vulnerability discovery is powered by access to two major frontier AI initiatives:

  1. Anthropic's Claude Mythos — via Project Glasswing, announced in April 2026, which provides select technology vendors with access to Anthropic's most advanced vulnerability-discovery models.

  2. OpenAI's Trusted Access for Cyber initiative — providing Microsoft with frontier AI models purpose-built for security flaw detection.

The Forewarning

On 9 July 2026, Microsoft Executive Vice President Pavan Davuluri published a blog post warning customers:

"As AI helps defenders discover more issues, customers will see a higher volume of security updates included in each security release."

This pre-announcement was unprecedented — Microsoft effectively told the world to brace for a flood of patches driven by AI.


The Three Zero-Days

CVE-2026-56155 — Active Directory Federation Services EoP (Actively Exploited)

  • Severity: Important

  • Impact: Allows an authorised attacker to escalate privileges locally to administrative level

  • Discovery: Credited to Microsoft's own Detection and Response Team (DART) — Jeremy Kingston and Scott Clark — indicating it was found during active incident response

  • Status: Actively exploited in the wild

CVE-2026-56164 — Microsoft SharePoint Server EoP (Actively Exploited)

  • Severity: Moderate

  • Impact: Missing authentication for a critical function allows an unauthorised attacker to elevate privileges over a network

  • Discovery: Credited to Google Cloud's Genwei Jiang, Mandiant Incident Response (Jayson Frost), FLARE OTF, and an anonymous researcher

  • CISA Advisory: The US Cybersecurity and Infrastructure Security Agency issued an urgent advisory for organisations running SharePoint servers

  • Mitigation: Enabling AMSI (Antimalware Scan Interface) with Request Body Scan set to Full

CVE-2026-50661 — Windows BitLocker Security Feature Bypass (Publicly Disclosed)

  • Severity: Important

  • Impact: An attacker with physical access could bypass BitLocker Device Encryption to access encrypted data

  • Status: Publicly disclosed but not yet observed in active exploitation


Critical Vulnerabilities — Key Highlights

Of the 59 critical-rated flaws, the most significant include:

CVE

Product

Type

CVE-2026-55008

Microsoft Exchange Server

Spoofing (CVSS 9.6)

CVE-2026-54121

Active Directory Certificate Services

Elevation of Privilege

CVE-2026-49164

Active Directory Domain Services

Remote Code Execution

CVE-2026-48561

Microsoft Copilot

Remote Code Execution

CVE-2026-55011/55012

Microsoft Defender

Remote Code Execution

CVE-2026-58644

SharePoint Server

Remote Code Execution

CVE-2026-50522

SharePoint Server

Remote Code Execution

CVE-2026-55040

SharePoint Server

Security Feature Bypass

CVE-2026-54992

Message Queuing Queue Manager

Remote Code Execution

CVE-2026-54118

SQL Server

Remote Code Execution

CVE-2026-50680/54127

Windows Hyper-V

Elevation of Privilege

CVE-2026-50694

Secure Socket Tunneling Protocol

Remote Code Execution

CVE-2026-50444

Windows Server Update Service

Elevation of Privilege


Industry Reaction

"AI Against Human Is Done"

The response from the managed services and cybersecurity community was stark. Travis Woods, strategic executive advisor at Fort Point IT, told CRN:

"This is being driven by the more powerful models being readily available. It's obviously accelerating the defensive stance that folks are having to take. And it's AI against AI. Because AI against human is done."

The Prioritisation Crisis

The sheer volume creates a fundamental challenge for IT and security teams:

  • Zack Finstad, VP of Cybersecurity at Logically: "We may not have the time to do the diligence that we've always done — testing and validating on our own systems, in our labs, before rolling out to customers. We may just have to buckle down, patch and deal with the fallout."

  • Satnam Narang, Tenable: Microsoft is on pace to shatter the full-year record of 1,245 CVEs set in 2020.

  • Dustin Childs, Trend Micro ZDI: "The bug apocalypse has fully descended upon us."

The Dell Incident

The rollout was not without complications. Microsoft was forced to halt updates for certain Dell devices with Intel processors after Dell reported incompatibilities causing unexpected shutdowns, overheating, and battery drain. This created a difficult trade-off: delay critical patches or risk hardware damage.


What This Means

1. The Patch Tuesday Model Is Breaking

Monthly patching cycles were designed for an era of human-discovered vulnerabilities. With AI surfacing hundreds of flaws per month, the model is under strain. The industry is moving toward continuous risk-based prioritisation rather than monthly bulk patching.

2. AI vs AI Is the New Battleground

While Microsoft uses frontier AI models defensively, experts widely expect threat actors to gain — or already possess — equivalent capabilities. The asymmetry of "AI discovers, humans patch" is not sustainable.

3. Testing Windows Are Shrinking

Organisations face an impossible choice: deploy patches immediately to close actively exploited flaws, or test thoroughly and risk leaving systems exposed. The consensus among MSPs is that testing windows will inevitably shrink.

4. Vulnerability Volume Is the New Normal

Microsoft has been explicit: this is not a one-off. Every future Patch Tuesday is expected to be larger than historical norms. Organisations must adapt their vulnerability management programmes accordingly.


Timeline

Date

Event

April 2026

Project Glasswing announced — Anthropic provides Claude Mythos to Microsoft

June 2026

Previous record: 206 CVEs patched

9 July 2026

Pavan Davuluri warns of "higher volume of security updates"

14 July 2026

Record 570 vulnerabilities patched; 3 zero-days disclosed

15 July 2026

Dell incompatibility forces partial update halt

17 July 2026

Microsoft presents at Black Hat USA 2026 on AI-era security


Sources

  1. TechCrunch — "Microsoft patches record number of security vulnerabilities, citing its use of AI" (15 Jul 2026)

  2. BleepingComputer — "Microsoft July 2026 Patch Tuesday fixes massive 570 flaws, 3 zero-days" (14 Jul 2026)

  3. Krebs on Security — "Microsoft Patches a Record 570 Security Flaws" (14 Jul 2026)

  4. CRN — "Microsoft's Gigantic AI-Fueled Bug Disclosure Signals New Era For Security: MSP Execs" (14 Jul 2026)

  5. CyberScoop — "Microsoft discloses 'the mother of all' vulnerability loads" (14 Jul 2026)

  6. Windows Central — "Windows 11's July 2026 update is packed with AI-driven improvements" (18 Jul 2026)

  7. Help Net Security — "AI-driven bug hunting fuels record Microsoft Patch Tuesday" (15 Jul 2026)

  8. Dark Reading — "Records Are Made to Be Broken: Patch Tuesday Raises Triage Stakes" (14 Jul 2026)

  9. The Register — "Microsoft cancels Patch Tuesday for some Dell users" (15 Jul 2026)

Back to blog

Read Next

AI

Claude Opus 5: The Day "Good Enough at Half Price" Became the Strategy

Anthropic just made the case that the most economically important AI work doesn't need a frontier model — and priced...
D S ·16 MIN READ
AI

Pax Silica: The Philippines bets 1,620 hectares on an AI supply-chain future

A geopolitical-industrial bet wearing AI infrastructure clothing — significant, contested, and not yet real.
D S ·11 MIN READ
AI

China’s Service-Robot Story Is Shifting From Viral Choreography to Controlled Commercial Work

China’s most credible robot advance is not a general-purpose humanoid; it is the conversion of narrow service workflows into engineered,...
D S ·7 MIN READ
FROM THE LIBRARY

Guides for getting better at the things that matter.

A growing collection of playbooks, frameworks, and deep dives.