Mark RadarMARK RADAR
About
EN
Sign in

Microsoft’s April Update Fixes More Than 200 Flaws as AI Vulnerability Detection Draws Attention

2 reports · First detected 2026-04-15 · Last active 2026-04-15

Microsoft’s monthly security updates are a critical part of protecting Windows systems and enterprise services. Anthropic’s Claude Mythos AI model has demonstrated an ability to discover vulnerabilities automatically, suggesting that both cyberattacks and defenses could accelerate. The development is also pushing technology companies including Microsoft to improve vulnerability assessment and patching efficiency.

Microsoft fixed 247 vulnerabilities in its April update, including zero-day flaws affecting SharePoint and Microsoft Defender. An April 15 cybersecurity bulletin also said SAP and Adobe issued security updates during the same period, underscoring the need for companies to patch systems and conduct risk assessments promptly.

All Coverage

2 original reports

The Backstory

The history behind this event
Microsoft’s August Update Fixes 421 Security Flaws2026-08-12 · 1 reports · similarity 0.86

Microsoft’s monthly security releases serve as a key benchmark for organizations managing Windows, Office and other widely deployed enterprise systems. The volume and severity of disclosed flaws can shape patching priorities across corporate IT departments and security teams. A batch covering 421 vulnerabilities underscores the persistent exposure created by complex software environments and the operational burden of keeping critical systems current.

Microsoft released its August security update on Aug. 12, addressing 421 vulnerabilities across products including Windows and Office. Other cybersecurity developments highlighted the same day included patches for high-risk SAP flaws, disclosures about the Kali365 phishing operation, and guidance from Trend Micro on how companies should structure security controls as they deploy artificial intelligence. The developments put software patching, phishing defenses and enterprise AI governance in focus.

Anthropic’s Mythos Finds Bugs Faster Than Microsoft Can Patch Them2026-08-03 · 1 reports · similarity 0.81

Anthropic launched Project Glasswing on April 7, 2026, giving about 50 initial partners controlled access to Claude Mythos Preview, an unreleased model built to identify and exploit software flaws. The group includes major technology and infrastructure providers such as Microsoft. Partners found more than 10,000 high- or critical-severity vulnerabilities in the first month, shifting cybersecurity’s constraint from finding bugs to verifying disclosures, producing patches and deploying fixes before attackers gain comparable AI capabilities.

ProPublica reported on July 29 that Mythos uncovered 90 critical and 141 important flaws in Microsoft SharePoint in April alone, outpacing engineers’ ability to patch them; hundreds more surfaced across Microsoft 365, Teams and Copilot. Microsoft fixed more than 200 bugs in June’s Patch Tuesday, then broke that record on July 14 with patches for more than 600. The company said volumes would not plateau soon and that it had invested in staff and AI-powered triage.

Microsoft Uses AI to Accelerate Vulnerability Patching, Update Volumes Set to Surge2026-07-15 · 3 reports · similarity 0.85

Microsoft has long protected users worldwide by fixing system vulnerabilities through its monthly Patch Tuesday updates. As hacking techniques grow increasingly sophisticated, the company has begun using MDASH, a multi-model agentic AI security system, to automate vulnerability scanning and validation. While the technology can help counter potential threats much earlier, it will also significantly increase the number of security updates, creating a new normal for enterprise cybersecurity.

Microsoft released its latest scheduled security update on July 15, patching 622 vulnerabilities across its own products in a single batch. Including fixes from the Chromium project, the total exceeded 1,000 and set a record for vulnerabilities disclosed in one month. Microsoft acknowledged that AI adoption would lead to even larger Patch Tuesday releases in the future, but stressed that the increase reflects stronger protection rather than weaker security.

Microsoft’s May Patch Tuesday Fixes 137 Security Flaws, Including in Azure AI Foundry2026-05-13 · 1 reports · similarity 0.86

Microsoft uses its monthly Patch Tuesday security updates to address vulnerabilities across Windows, Azure and related enterprise products. The inclusion of Azure AI Foundry shows that generative AI platforms also face access-control and code-execution risks. Companies that delay installing updates could widen the attack surface across cloud services and endpoint devices.

Microsoft’s May security update fixed 137 vulnerabilities with CVE identifiers across components including Azure AI Foundry and system drivers. The patches focused on issues such as privilege escalation and remote code execution, aiming to reduce the risk of attackers infiltrating AI services, gaining higher system privileges or taking control of affected devices.

Mark Radar|MARK RADAR

If you search news on Google, you can set Mark Radar as a preferred source—our coverage will show up more often in your results. Set as preferred source on Google →

All times are in Taipei time (GMT+8)