Microsoft Unveils MDASH AI Security for Windows
Microsoft revealed MDASH, an AI-driven scanning harness using over 100 agents to identify and validate critical Windows vulnerabilities.
Microsoft has introduced a major security overhaul for Windows with the multi-model agentic scanning harness, or MDASH. Revealed in May 2026, the system utilizes a dedicated cloud infrastructure to orchestrate over 100 specialized AI agents and third-party models that scan the Windows codebase. MDASH employs a unique pipeline where different model families debate suspected flaws, followed by a Windows-specific pipeline to prove findings before they reach engineers. This approach has already uncovered 16 vulnerabilities in the networking and authentication stacks, including four critical remote code execution flaws in the kernel TCP/IP stack and IKEv2 service. While Microsoft is using AI to generate and validate fixes, human code review remains mandatory. Customers should expect a higher volume of security updates, supported by Known Issue Rollback and an updated Secure Development Lifecycle addressing AI-enabled attack techniques.