STEAM DECK Humble Choice September 2026: 8 Games Including Steam Deck Verified Titles GAMES WARDOGS Early Access and 1.0 Launch Dates Explained GAMES The Blood of the Dawnwalker Lets You Beat the Final Boss in the Prologue PLAYSTATION 5 Astonishia Story Western Release Set for Feb 11, 2027 on PS5, Switch 2, and PC PLAYSTATION 5 GTA 6 PC Release May Accelerate Amid High PS5 Prices GAMES Blood of Dawnwalker Xanthe Lantern Puzzle Solution GAMES Ikea Kallax Shelf Teased for Skyrim Merch Drop in UK and Ireland NINTENDO SWITCH 2 Maneater 2 Announced for 2027 Launch on Switch 2, PS5, and PC CONSOLES Square Enix TGS 2026 Lineup Features Dragon Quest VII and Kingdom Hearts IV PLAYSTATION 5 Konami Rhapsody in Scarlet Announced for PS5, Xbox Series, and PC GAMES Naughty Dog Confirms The Last of Us Franchise Is Not Done AMD NBA 2K27 DLSS 5 Benchmarks Show 60% Performance Hit on RTX 5090 GAMES FromSoftware Avoids Fixed Game Formula, Miyazaki Says Fresh Ideas Rule ACCESSORIES Sony GTA 6 DualSense Controllers Launch November 19 for $85

Microsoft MDASH AI System Identifies 16 Critical Windows Flaws Before Exploitation

NicoGG 2 min read

Microsoft unveils MDASH, an AI system that identified 16 critical Windows vulnerabilities including remote code execution bugs before they could be exploited.

Microsoft MDASH AI System Identifies 16 Critical Windows Flaws Before Exploitation
SOFTWARE AND UPDATES

Microsoft has introduced MDASH, an artificial intelligence system designed to identify security vulnerabilities in Windows before attackers can exploit them. The company announced the system on May 12, 2026, highlighting its ability to discover critical flaws during the testing phase. MDASH successfully located 16 security issues in Windows that were subsequently patched in the same month's Patch Tuesday release.

New tool finds security issues before hackers can exploit them

The system detected four critical remote code execution bugs, including CVE-2026-33827 and CVE-2026-33824. CVE-2026-33827 resides in tcpip.sys and is triggered by crafted IPv4 packets. CVE-2026-33824 is a pre-authentication double-free vulnerability in the IKEEXT service, which is reachable over UDP port 500. MDASH utilized over 100 specialized agents across frontier and distilled models to find these defects.

MDASH ranked at the top of the public CyberGym benchmark with a score of 88.45 percent. This performance outpaced Anthropic's Mythos Preview, which scored 83.1 percent, and OpenAI's GPT-5.5, which achieved 81.8 percent. In private testing against confirmed Microsoft Security Response Center cases in clfs.sys and tcpip.sys, the system achieved 100 percent recall for tcpip.sys and 96 percent recall for clfs.sys.

Microsoft currently offers MDASH in a limited private preview for a small group of enterprise customers. The company expects broader availability to follow in the months ahead. The system represents a shift toward automated vulnerability hunting, with Microsoft stating that MDASH proved its worth by finding flaws before any attacker could get to them.

Source: NotebookCheck