Key Takeaways
- Microsoft released 570 security patches this week.
- Two vulnerabilities are classified as zero-days.
- AI is being used to identify previously undiscovered security flaws.
Record Number of Patches Released
Microsoft has announced a significant update, issuing a record 570 security patches for various products, including Windows and Office. This release is part of the company’s regular monthly update schedule known as “Patch Tuesday.” The use of artificial intelligence has been credited with helping identify these vulnerabilities.
Zero-Day Vulnerabilities Identified
Among the patched vulnerabilities, at least two are classified as zero-days. This means they were exploited by attackers before Microsoft became aware of them. One zero-day affects Windows Server, allowing unauthorized users to escalate their privileges to that of a system administrator. Another vulnerability impacts the SharePoint file sharing server, with the U.S. Cybersecurity and Infrastructure Security Agency (CISA) warning that hackers are actively exploiting this flaw.
AI’s Role in Security Enhancements
In a recent blog post, Microsoft indicated that the number of security patches is expected to increase in the future, largely due to the implementation of AI technologies. Windows chief Pavan Davuluri stated, “As AI helps defenders discover more issues, customers will see a higher volume of security updates included in each security release.” This approach aims to uncover vulnerabilities that may have existed in the code for years, as some components of Windows date back decades.
