{"id":1618,"date":"2026-07-29T18:22:56","date_gmt":"2026-07-29T18:22:56","guid":{"rendered":"https:\/\/valutednews.com\/?p=1618"},"modified":"2026-07-29T18:22:56","modified_gmt":"2026-07-29T18:22:56","slug":"microsoft-struggling-with-hundreds-of-ai-discovered-security-bugs-propublica","status":"publish","type":"post","link":"https:\/\/valutednews.com\/?p=1618","title":{"rendered":"Microsoft Struggling With Hundreds of AI-Discovered Security Bugs \u2014 ProPublica"},"content":{"rendered":"<div style=\"text-align:center\"><img decoding=\"async\" src=\"https:\/\/www.propublica.org\/wp-content\/uploads\/2026\/07\/20260709-Gordon-microsoft-mythos-social.jpg?resize=2000,1050\" class=\"attachment-post-thumbnail size-post-thumbnail wp-post-image\" alt=\"Microsoft Struggling With Hundreds of AI-Discovered Security Bugs \u2014 ProPublica\" title=\"Microsoft Struggling With Hundreds of AI-Discovered Security Bugs \u2014 ProPublica\" \/><\/div><p><\/p>\n<div>\n<p>On an afternoon in mid-May, dozens of Microsoft engineers and their managers gathered online and in a conference room at the company\u2019s Redmond, Washington, headquarters to discuss Project Glasswing.<\/p>\n<p>The tech giant was racing to fix weaknesses in its code that a new AI model known as Mythos was uncovering at an unprecedented clip. The AI behemoth Anthropic, which developed Mythos, had given access to select organizations that make software used by regular people, companies and governments across the world. The goal was to find and fix the vulnerabilities before hackers and adversarial governments like China began using similar tools to find and exploit them for espionage and sabotage.<\/p>\n<p>As the group settled in, one engineer asked the question that loomed over the meeting: Did Mythos \u201clive up to the hype that Anthropic claimed it would have had?\u201d<\/p>\n<p>\u201cYes,\u201d a manager responded, according to a recording of the meeting viewed by ProPublica.<\/p>\n<p>The version being used by Microsoft, Claude Mythos Preview, was surfacing bugs faster than the tech giant could patch them, and engineers, the manager said, were now in \u201ca mad dash\u201d to close the gap.<\/p>\n<p>One slide in that day\u2019s presentation showed that in April alone, Mythos had uncovered 90 \u201ccritical\u201d bugs and 141 \u201cimportant\u201d ones in SharePoint, Microsoft\u2019s widely used collaboration software. In the first half of May it found even more.<\/p>\n<p>\u201cPlease, please, please if your org has any April bugs, drive those down,\u201d engineering manager Hans Andersen implored the group. They had roughly two weeks \u201cto find as many things and do as much good as we can with this access.\u201d<\/p>\n<p>May 31, he explained, \u201cis considered the day when the rest of the world will have caught up.\u201d<\/p>\n<p>The engineers on the call poked at that assertion, with one of them summing up the predicament: \u201cSo basically you\u2019re saying if it\u2019s released on June 1, then on June 2 the adversaries will have our bugs?\u201d<\/p>\n<p>Yep, one person responded. Yep, another echoed.<\/p>\n<p>Ever since Anthropic kick-started a national conversation about the bug-hunting power of AI in April, <a href=\"https:\/\/www.anthropic.com\/glasswing\">when Project Glasswing was made public<\/a>, national security experts predicted that the U.S. would have a window of opportunity to fix flaws before adversaries would have similar models capable of discovering the same weaknesses. In late June, the international alliance of intelligence agencies known as the Five Eyes \u2014 whose members are the U.S., Australia, Canada, New Zealand and the U.K. \u2014 warned in an <a href=\"https:\/\/www.cyber.gov.au\/about-us\/view-all-content\/news\/five-eyes-cyber-security-agencies-statement\">unusual joint statement<\/a> that in a matter of months, that window would be closing. But the recording of the Microsoft meeting, along with internal documents reviewed by ProPublica, suggest the day of cyber reckoning may already be here.<\/p>\n<p>Given the deluge of flaws Mythos has identified, Microsoft so far has focused on patching those it considers most dangerous, which are classified critical or important, according to the presentation as well as the company\u2019s own public patch updates. The internal records indicate that Microsoft plans to eventually address \u201cmoderate\u201d-severity flaws uncovered by Mythos. The documents made no mention of \u201clow\u201d-severity bugs.<\/p>\n<p>The company\u2019s approach reflects the triage system that is typical in the industry. Just as the sickest patients are the first to be treated in the emergency room, vulnerability triage prioritizes issues that are likely to cause the most damage if exploited by hackers.<\/p>\n<p>But that strategy carries its own risk in this AI-powered bug-finding era, in which new tools are unearthing a record-breaking volume of weaknesses in the products we use every day. Mythos, for example, is able to chain together a string of bugs that build on one another, meaning that the low- and moderate-severity vulnerabilities that remain unpatched could create an opening to carry out devastating attacks.<\/p>\n<div class=\"wp-block-propublica-lead-in bb--size-small-right p-bb--size-small-right\">\n<h3 class=\"wp-block-heading\" id=\"h-paper-trail-podcast\">\u201cPaper Trail\u201d Podcast<\/h3>\n<p>Listen to Renee Dudley discuss her Microsoft reporting on ProPublica\u2019s podcast \u201c<a href=\"https:\/\/www.propublica.org\/series\/paper-trail\">Paper Trail<\/a>.\u201d<\/p>\n<figure class=\"wp-block-propublica-html\">\n\t<iframe loading=\"lazy\" allow=\"monetization\" frameborder=\"0\" height=\"200\" width=\"100%\" style=\"min-width: 300px; color-scheme: auto;\" src=\"https:\/\/play.prx.org\/e?ac=015086&amp;ge=prx_16890_f91c8e1d-66c3-4915-a640-1ad9dfbffafa&amp;uf=https%3A%2F%2Fpublicfeeds.net%2Ff%2F16890%2Ffeed-rss.xml\" title=\"PRX Embed Player\" scrolling=\"no\"><\/iframe><\/figure>\n<\/div>\n<p>\u201cThe problem now is that you can chain four low-level flaws, and that can equal a high severity,\u201d said Vinh Nguyen, a senior technical adviser to Anthropic and a senior fellow for AI at the Council on Foreign Relations who formerly served as chief AI officer and chief data scientist at the National Security Agency. \u201cIf you\u2019re Microsoft, the current triage strategy may be underpricing risks.\u201d<\/p>\n<p>In emailed responses to ProPublica\u2019s questions, Microsoft stood by its approach, saying its triaging decisions are based on a number of factors, including exploitability and the impact on customers. The company presentation did not mention chaining, but a spokesperson told ProPublica that the technique \u201chas long been considered as part of vulnerability assessment and risk analysis.\u201d<\/p>\n<p>Asked about the internal presentation and the then-looming May 31 deadline, the spokesperson downplayed its significance, saying that \u201caccelerated targeting and exploitation of new vulnerabilities is not a new phenomenon.\u201d That said, he added, the comments made during the meeting reflect how the company \u201cfeels a sense of urgency to help our customers at this time.\u201d<\/p>\n<p>\u201cWhat was heard on that call and is true today is that security is Microsoft\u2019s most important priority and teams across the company are prioritizing using AI to discover and remediate vulnerabilities as quickly as possible.\u201d<\/p>\n<p>Microsoft declined to answer questions about how many bugs engineers had patched since the presentation.<\/p>\n<p>Anthropic declined to comment.<\/p>\n<p>The internal Microsoft presentation and accompanying slides predicted that the group of staffers working on SharePoint, which is used by governments and businesses worldwide to manage data and documents, \u201cwill be busy for months,\u201d first working through the highest-priority critical bugs then tackling the important ones in August. <a href=\"https:\/\/www.microsoft.com\/en-us\/msrc\/security-update-severity-rating-system\">Microsoft says vulnerabilities it categorizes<\/a> as critical include so-called worms that can crash systems and spread malware as they race across computer networks. Important ones could result in \u201ccompromise of the confidentiality, integrity, or availability of user data\u201d as well as the \u201cavailability of processing resources.\u201d After those categories were cleared, the group would begin work on roughly 300 \u201cmoderate\u201d bugs, according to the presentation.<\/p>\n<p>While the internal documents reviewed by ProPublica do not include updates on the entire breadth of Microsoft\u2019s offerings, they do give a sense of the scale of the problem. One document noted that, since the company started using Mythos earlier this year, it had collectively found hundreds of bugs that Microsoft categorized as either critical or important in popular products such as Microsoft 365, the Teams conferencing platform and the Copilot AI tool. As of mid-May, most of them had yet to be patched.<\/p>\n<p>\u201cThey\u2019re not profound and exotic, but they\u2019re real,\u201d Andersen, the engineering manager, said during the meeting. \u201cAnd a lot of them are exploitable.\u201d<\/p>\n<p>It\u2019s unclear whether hackers have exploited any specific bug identified by Mythos, but some\u00a0 have <a href=\"https:\/\/www.sysdig.com\/blog\/jadepuffer-agentic-ransomware-for-automated-database-extortion\">tapped AI to automate attacks<\/a> and <a href=\"https:\/\/www.bloomberg.com\/news\/articles\/2026-05-11\/hackers-used-ai-to-build-zero-day-attack-google-researchers-say?srnd=undefined\">appear to be using<\/a> Mythos-like tech to find and exploit weaknesses.<\/p>\n<p>There have been outward signs of Microsoft\u2019s internal struggle to deal with the growing list of bugs to be patched. Each month, the company publicly releases fixes for its software vulnerabilities in what\u2019s known as \u201cPatch Tuesday.\u201d In June, it released patches for more than 200 bugs, which industry experts then said was an <a href=\"https:\/\/www.zerodayinitiative.com\/blog\/2026\/6\/9\/the-june-2026-security-update-review\">all-time high<\/a>. But on July 14, the company blew through that record and released patches for more than 600 bugs. Only seven were categorized as low- or moderate-severity, one of which hackers were actively exploiting, according to Dustin Childs, leader of the Zero Day Initiative bug bounty program, which is part of cybersecurity company TrendAI. The rest were important or critical.<\/p>\n<p>\u201cWell folks. Here we are. The bug apocalypse has fully descended upon us,\u201d <a href=\"https:\/\/www.zerodayinitiative.com\/blog\/2026\/7\/14\/the-july-2026-security-update-review\">Childs wrote in a blog post<\/a> on July 14.<\/p>\n<p>Microsoft told ProPublica that the overall volume of bugs \u201cwill not be plateauing for a bit,\u201d but a spokesperson said the company has \u201cinvested heavily in both people as well as AI-powered triage solutions that scale quickly to handle the growing number of vulnerabilities.\u201d<\/p>\n<p>Given the new realities of the AI age, including the chaining capabilities, companies like Microsoft might need to rethink their entire approach to triage, said Nguyen, the NSA\u2019s former AI chief. Rather than shunting what are now considered low-risk flaws aside, companies should be dedicating staff to developing and testing patches for the entire spectrum of vulnerabilities, he said. In other words, the cyber ER needs more doctors and nurses treating illnesses that are life-threatening as well as the minor wounds that could later turn deadly.<\/p>\n<p>\u201cThere\u2019s no alternative,\u201d Nguyen said. \u201cThe patients are coming in fast and furious.\u201d<\/p>\n<p>Microsoft told ProPublica it\u2019s \u201calways going to be reevaluating and considering whether things that were previously lows or moderates be upgraded or thought about differently. With these AI systems, it makes us rethink some of these things. Across the industry, we\u2019re all looking to see how drastic of a change it will be.\u201d<\/p>\n<figure class=\"wp-block-pullquote bb--size-small-left p-bb--size-small-left\">\n<blockquote>\n<p>\u201cThe bug apocalypse has fully descended upon us.\u201d<\/p>\n<p><cite> Dustin Childs, leader of the Zero Day Initiative bug bounty program<\/cite><\/p><\/blockquote>\n<\/figure>\n<p>Microsoft\u2019s users may be particularly vulnerable. The popularity of its offerings, used the world over, makes it a frequent and lucrative target for hackers. In addition, many of its products contain \u201clegacy\u201d code. Developed decades ago using now-outdated technology, this <a href=\"https:\/\/www.ibm.com\/think\/topics\/legacy-code\">code<\/a> contains unaddressed flaws and contributes to what is known in the industry as \u201c<a href=\"https:\/\/www.ibm.com\/think\/topics\/technical-debt\">technical debt<\/a>.\u201d<\/p>\n<p>But the challenge of fixing the flood of newly found bugs also extends to the rest of the software industry, and to open-source software code that is typically free to use and largely maintained by volunteers. Open-source software underpins internet infrastructure and is incorporated into much of the world\u2019s modern technology, including products offered by major tech companies such as Microsoft.<\/p>\n<p>\u201cNobody has really figured out how to deal with this, and everybody is casting around for what they need to do,\u201d said J. Michael Daniel, a former cybersecurity adviser to President Barack Obama and the president of the Cyber Threat Alliance, a nonprofit organization focused on cybersecurity. \u201cOur tech debt is coming due.\u201d<\/p>\n<p>Ben Edwards, a data scientist who specializes in managing software vulnerabilities, said the software industry was handling an \u201cintense volume even before AI.\u201d<\/p>\n<p>\u201cIt was like drinking from a garden hose on the jet setting before, and now it\u2019s like drinking from a fire hose,\u201d Edwards said. \u201cThey might have had the teams that could handle that garden hose. Whether they can handle the fire hose is something else.\u201d<\/p>\n<p>Although the volume of vulnerabilities has grown over the years, Microsoft\u2019s internal group responsible for fielding them, the Microsoft Security Response Center, has been perennially understaffed. Even before the crush of AI-identified bugs, the center fielded hundreds or even thousands of reports a month, pushing the group to its limits, ProPublica has reported.<\/p>\n<p>The size of the center reflects Microsoft\u2019s corporate philosophy: Plugging security holes is a cost center, while making new products is a profit center, <a href=\"https:\/\/www.propublica.org\/article\/microsoft-solarwinds-golden-saml-data-breach-russian-hackers\">former employees said<\/a>. The company is loath to tie up its best engineers with making security patches \u2014 a cost center \u2014 instead of developing new products and features that will generate profits, ProPublica has reported.<\/p>\n<p>Microsoft told ProPublica that it does not discuss internal staffing decisions but has made investments in recent years to \u201cfocus our teams on keeping our customers secure.\u201d The company \u201ccontinuously evaluates the staffing, processes, and technologies required to support security response and vulnerability management,\u201d a spokesperson said.<\/p>\n<p>According to the slides that accompanied the May internal presentation, Anthropic provided Mythos access to roughly 50 full-time Microsoft employees, with a goal to \u201charden critical services before publicly available models catch up.\u201d A slide titled \u201cWhat\u2019s Next\u201d predicted that the Microsoft Security Response Center would see continued case volume \u201cas public tools catch up\u201d to Mythos.<\/p>\n<p>During the May meeting, one staffer appeared to take comfort in the belief that adversaries \u201cdon\u2019t have the source code\u201d that such an AI tool would scan for weaknesses. His colleagues, however, quickly corrected him. Portions of Microsoft\u2019s code have, in fact, fallen into hackers\u2019 hands over the years.<\/p>\n<p>\u201cIt might not be this week\u2019s source code,\u201d one person said. \u201cBut they\u2019ve got source code. It\u2019s out there.\u201d<\/p>\n<p>In a statement to ProPublica, Microsoft downplayed the comment, saying engineers \u201cdesign our security processes on the expectation that determined adversaries may gain access to code.\u201d<\/p>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>On an afternoon in mid-May, dozens of Microsoft engineers and their managers gathered online and in a conference room at the company\u2019s Redmond, Washington, headquarters to discuss Project Glasswing. The tech giant was racing to fix weaknesses in its code that a new AI model known as Mythos was uncovering at an unprecedented clip. The&#8230;<\/p>\n","protected":false},"author":1,"featured_media":1619,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/www.propublica.org\/wp-content\/uploads\/2026\/07\/20260709-Gordon-microsoft-mythos-social.jpg?resize=2000,1050","fifu_image_alt":"","footnotes":""},"categories":[20],"tags":[3132,3133,3131,3129,81,971,3130],"class_list":["post-1618","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-politics","tag-aidiscovered","tag-bugs","tag-hundreds","tag-microsoft","tag-propublica","tag-security","tag-struggling"],"_links":{"self":[{"href":"https:\/\/valutednews.com\/index.php?rest_route=\/wp\/v2\/posts\/1618","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/valutednews.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/valutednews.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/valutednews.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/valutednews.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1618"}],"version-history":[{"count":0,"href":"https:\/\/valutednews.com\/index.php?rest_route=\/wp\/v2\/posts\/1618\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/valutednews.com\/index.php?rest_route=\/wp\/v2\/media\/1619"}],"wp:attachment":[{"href":"https:\/\/valutednews.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1618"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/valutednews.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=1618"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/valutednews.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=1618"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}