
This week, Microsoft announced a historic number of security updates for Windows, Office, and various technology products, attributing the discovery of code vulnerabilities to AI assistance.
On Tuesday, the technology and cloud leader rolled out patches for 570 security issues as part of its routine monthly fix deployment, known among security experts as “Patch Tuesday.”
Among these vulnerabilities, at least two are considered zero-days, meaning they were exploited prior to Microsoft being informed. One flaw impacting Windows Server enables attackers to elevate their privileges from a standard user to that of a system administrator. Another flaw impacts the SharePoint file-sharing server — CISA, the cybersecurity agency of the U.S. government, has alerted that attackers were actively exploiting this vulnerability to breach organizations.
Krebs on Security was the first to report this information.
This significant patch update follows a week after Microsoft indicated in a blog entry that it anticipated its typical monthly security patch volume would be much greater than in the past. The firm mentioned its utilization of AI to assist staff in identifying previously undetected security flaws in its software.
“As AI aids defenders in identifying more problems, customers can expect a higher amount of security updates in every security release,” stated Windows head Pavan Davuluri.
With advances in AI models concentrating on cybersecurity challenges, researchers are leveraging them to uncover vulnerabilities that may have remained hidden in software code for years, if not decades. Some segments of Microsoft’s Windows code are decades old.

