Industry
Microsoft ships a record 570 plus security patches, credits AI assisted bug hunting
9:00 AM · July 15, 2026
Microsoft's July 2026 Patch Tuesday release addressed a record 570 security vulnerabilities, according to TechCrunch and corroborated by Krebs on Security and other outlets, more than tripling last month's previous all time high of 206. Microsoft attributed the surge to AI assisted vulnerability discovery, saying that advances in AI are making it possible for defenders to find more issues, faster, across more of the company's legacy code than manual review alone could ever cover. The release included at least three zero day vulnerabilities, two of which were already being actively exploited before a fix became available, an Active Directory Federation Services elevation of privilege flaw and a Microsoft SharePoint Server elevation of privilege flaw, alongside a Windows BitLocker security feature bypass that had been publicly disclosed but not confirmed as exploited. Close to 60 of the flaws fixed this month were rated critical, meaning attackers could use them to seize remote control of a Windows device with little or no user interaction, and Microsoft is now recommending organizations install Windows 11 quality updates within three days given how quickly AI assisted attackers can exploit newly disclosed vulnerabilities. The scale of this month's release illustrates a pattern security researchers expect to continue: AI is simultaneously helping defenders discover more flaws and helping attackers exploit them faster once they are known.