NINTENDO SWITCH Unpetrified: Echoes of Nature Console Release Confirmed for Fall 2026 PHONES Huawei Leads China Smartphone Market as Apple Grows Amid 2% Decline GAMES Phasmophobia Gets Deildegast Ghost and 13 Willow Street Rework STEAM Fallout 76 Update 2.28 Released: Infestations Rebalanced and Boss Loot Fixed GAMES Former Forza Director Calls Xbox Game Pass ‘A Real Shame’ GAMES Bethesda Takes Fallout 76 Servers Offline for July 21 Title Update INTEL Kirin 9030 Pro Teardown Shows SMIC N+3 Beats Intel 18A Pitch PLAYSTATION 5 Wreckreation 2 Announced for PS5, Xbox Series, and PC NINTENDO SWITCH Dear Passengers Console Status: PS, Xbox, PC, and Switch Availability XBOX SERIES X Xbox Game Pass Adds 6 New Games in July 2026, Including Halo GAMES Xbox Game Pass Price Cuts to $22.99 as Seven New Titles Join Service GAMES Hunty Zombie July 2026 Reward Codes: Free Items for Roblox Players GAMES Dear Passengers Release News & Demo Details for 2026 Launch HANDHELD GAMING Anbernic RG SP Launches with GBA SP Design and Thinner Chassis

Microsoft MDASH AI System Identifies 16 Critical Windows Flaws Before Exploitation

NicoGG 0 comments 2 min read

Microsoft unveils MDASH, an AI system that identified 16 critical Windows vulnerabilities including remote code execution bugs before they could be exploited.

Microsoft MDASH AI System Identifies 16 Critical Windows Flaws Before Exploitation
SOFTWARE AND UPDATES

Microsoft has introduced MDASH, an artificial intelligence system designed to identify security vulnerabilities in Windows before attackers can exploit them. The company announced the system on May 12, 2026, highlighting its ability to discover critical flaws during the testing phase. MDASH successfully located 16 security issues in Windows that were subsequently patched in the same month's Patch Tuesday release.

New tool finds security issues before hackers can exploit them

The system detected four critical remote code execution bugs, including CVE-2026-33827 and CVE-2026-33824. CVE-2026-33827 resides in tcpip.sys and is triggered by crafted IPv4 packets. CVE-2026-33824 is a pre-authentication double-free vulnerability in the IKEEXT service, which is reachable over UDP port 500. MDASH utilized over 100 specialized agents across frontier and distilled models to find these defects.

MDASH ranked at the top of the public CyberGym benchmark with a score of 88.45 percent. This performance outpaced Anthropic's Mythos Preview, which scored 83.1 percent, and OpenAI's GPT-5.5, which achieved 81.8 percent. In private testing against confirmed Microsoft Security Response Center cases in clfs.sys and tcpip.sys, the system achieved 100 percent recall for tcpip.sys and 96 percent recall for clfs.sys.

Microsoft currently offers MDASH in a limited private preview for a small group of enterprise customers. The company expects broader availability to follow in the months ahead. The system represents a shift toward automated vulnerability hunting, with Microsoft stating that MDASH proved its worth by finding flaws before any attacker could get to them.

Source: NotebookCheck

Discussion

0 comments

Leave a comment