Microsoft is developing an artificial intelligence system designed to discover, validate and help remediate software vulnerabilities. Known as codename MDASH, the system combines multiple AI models with security-testing tools and more than 100 specialised agents.

Unlike a standard code assistant that suggests improvements while a developer types, MDASH is designed to investigate whether weaknesses in software could create genuine security risks. It can examine code, develop theories about possible vulnerabilities, run tests, analyse results and collect evidence for human security researchers.

Microsoft reported in May 2026 that MDASH contributed to the discovery of 16 previously unknown vulnerabilities in Windows networking and authentication components. Four were described as critical remote-code-execution flaws, and Microsoft said the identified issues were addressed through its May 2026 security update process.