Microsoft issued a record 570 security patches in its latest Patch Tuesday release covering Windows, Office, and other products. The company credited artificial intelligence tools with helping its teams uncover far more previously unknown code vulnerabilities than in prior months. Windows boss Pavan Davuluri had previewed the surge a week earlier, stating that AI-assisted discovery would result in higher volumes of security updates for customers going forward.
Two of the fixed flaws were zero-days already under active exploitation. One Windows Server vulnerability enables privilege escalation from a limited user account to full system administrator rights. A second bug in SharePoint prompted a warning from CISA that attackers were using it to compromise organizations.
The elevated patch count reflects a broader industry shift in which advanced AI models are being applied to cybersecurity research. These tools can surface long-dormant bugs, including weaknesses in decades-old portions of the Windows codebase. Krebs on Security first reported the scale of the update.
As AI capabilities focused on code analysis continue to improve, both vendors and independent researchers expect the volume of disclosed and patched vulnerabilities to keep rising across major software platforms.