Skip to content
16 New Windows Vulnerabilities Discovered by MDASH AI-Powered Agentic Security System

16 New Windows Vulnerabilities Discovered by MDASH AI-Powered Agentic Security System

Written By Anoop C Nair
Last Updated May 15, 2026
Posted In AI
SHARE

Key Takeaways

  • Microsoft introduced a new AI-powered vulnerability discovery system called MDASH.
  • The platform identified 16 new Windows vulnerabilities, including four Critical remote code execution flaws.
  • MDASH uses more than 100 specialised AI agents instead of a single AI model.
  • The system achieved 100% detection on a private Windows driver test with zero false positives.

In this post we are discussing 16 New Windows Vulnerabilities Discovered by MDASH AI-Powered Agentic Security System. Recently, Microsoft announced a new AI-powered security system called MDASH (Microsoft Security multi-model agentic scanning harness) that can automatically find serious software vulnerabilities in Windows. Microsoft explains that the platform helped researchers discover 16 new security flaws, including several critical remote code execution bugs.

What is MDASH?

MDASH, short for Microsoft’s multi-model agentic scanning harness, is an AI-powered vulnerability discovery and remediation platform. Instead of depending on one AI model, the system combines multiple frontier and distilled models that work together through different stages of security analysis.
Table of Contents

16 New Windows Vulnerabilities Discovered by MDASH AI-Powered Agentic Security System

The new system was developed by Microsoft’s Autonomous Code Security team and uses more than 100 specialized AI agents working together. Instead of relying on a single AI model, the platform analyzes code, validates findings, and tests whether vulnerabilities can actually be exploited.

What’s New in This Announcement?

Microsoft built a new AI system called MDASH. It uses many small AI agents working together to find security bugs faster. One of the biggest highlights is the discover of 16 vulnerabilities in Windows networking and authentication components during Microsoft’s Patch Tuesday cycle. Several of these bugs were found in highly sensitive services including:

  • tcpip.sys
  • ikeext.dll
  • netlogon.dll
  • dnsapi.dll
  • http.sys
ComponentCVESeverityType
tcpip.sysCVE-2026-33827CriticalRemote Code Execution
tcpip.sysCVE-2026-40413ImportantDenial of Service (DoS)
tcpip.sysCVE-2026-40405ImportantDenial of Service
ikeext.dllCVE-2026-33824CriticalRemote Code Execution
tcpip.sysCVE-2026-40406ImportantInformation Disclosure
tcpip.sysCVE-2026-35422ImportantSecurity Feature Bypass
tcpip.sysCVE-2026-32209ImportantSecurity Feature Bypass
ikeext.dllCVE-2026-35424ImportantDenial of Service
telnet.exeCVE-2026-35423ImportantInformation Disclosure
tcpip.sysCVE-2026-40414ImportantDenial of Service
tcpip.sysCVE-2026-40401ImportantDenial of Service
tcpip.sysCVE-2026-40415ImportantRemote Code Execution
http.sysCVE-2026-33096ImportantDenial of Service
tcpip.sysCVE-2026-40399ImportantElevation of Privilege
netlogon.dllCVE-2026-41089CriticalRemote Code Execution
dnsapi.dllCVE-2026-41096CriticalRemote Code Execution
16 New Windows Vulnerabilities Discovered by MDASH AI-Powered Agentic Security System -Table.1

AI Model Benchmark Performance Chart

The chart below shows the improvement of AI models in vulnerability discovery between 2024 and 2026. Earlier models achieved lower detection rates, while newer models such as GPT-5.5 and Claude Sonnet 4.6 showed significantly stronger performance. Microsoft’s MDASH multi-model system achieved one of the highest success rates by combining multiple AI models and specialised agents instead on asingle model.

Patch My PC
16 New Windows Vulnerabilities Discovered by MDASH AI-Powered Agentic Security System -Fig.1 Creds to MS
16 New Windows Vulnerabilities Discovered by MDASH AI-Powered Agentic Security System -Fig.1Creds to MS

MDASH Workflow Architecture

Microsoft’s MDASH system automates vulnerability discovery using multiple AI agents. The workflow includes repository analysis, code scanning, bug validation, proof-of-concept generation, and automated patch validation. More than 100 specialised AI agents work together to identify vulnerabilities, reduce false positives, reproduce bugs, and recommend fixes across large enterprise codebases.

16 New Windows Vulnerabilities Discovered by MDASH AI-Powered Agentic Security System -Fig.2 Creds to MS
16 New Windows Vulnerabilities Discovered by MDASH AI-Powered Agentic Security System -Fig.2 Creds to MS

Need Further Assistance or Have Technical Questions?

Join the LinkedIn Page and Telegram group to get the latest step-by-step guides and news updates. Join our Meetup Page to participate in User group meetings. Also, join the WhatsApp Community  and the WhatsApp channel to get the latest news on Microsoft Technologies. We are there on Reddit as well.

Author

Anoop C Nair is a Workplace Technology solution architect with 25+ years of experience. Microsoft Certified Trainer. Microsoft MVP from 2015 onwards for consecutive 11+ years! He is a blogger, Speaker, and Founder of HTMD Community and HTMD Conference. His main focus is on Device Management technologies like Intune, Windows, and Cloud PC. He writes about technologies like Intune, SCCM, Windows, Cloud PC, Entra, and Microsoft Security.

Written by

Anoop C Nair is Workplace Technology solution architect with 25+ years of experience in global enterprise organizations such as JP Morgan, Capgemini, etc. Microsoft Certified Trainer. Microsoft MVP from 2015 onwards for consecutive 11+ years! He also conducts Intune and modern workplace tech training for enterprise organizations. He is Blogger, Speaker, and Founder of HTMD Community and HTMD Conference. His main focus is on Device Management technologies like Intune, Windows, Cloud PC. He writes about technologies like Intune, SCCM, Windows, Cloud PC, Windows, Entra, Microsoft Security.

Discussion

Join the discussion

Your email address will not be published. Required fields are marked *

Related guides

AI

How to Configure Google Gemini Integration Settings using Microsoft Intune

Key Takeaways How to Configure Google Gemini Integration Settings using Microsoft Intune! Google Chrome’s Generative AI settings in Intune allow administrators to centrally manage how Chrome’s AI-powered features function across enterprise devices. These settings are especially important in today’s AI-driven era. Once devices are properly enrolled in Microsoft Intune, administrators can seamlessly enforce these policies, […]

SN Sujin Nelladath 6 min read
AI

3 Core Areas to Improve Security Reduce Risk and Build Resilience Against AI-Driven Threats

Key Takeaways In this post, we are discussing3 Core Areas to Improve Security Reduce Risk and Build Resilience Against AI-Driven Threats. Microsoft has introduced a set of new security capabilities focused on AI threats more effectively. This includes updated guidance to help organisations assess their exposure, prioritise critical risks, and take faster action to fix […]

AC Anoop C Nair 4 min read
AI

Intune Policy Now Allows Automatic Removal of Unused Copilot App

Key Takeaways In this Post, we are discussing Intune Policy Now Allows Automatic Removal of Unused Copilot App. Microsoft has introduced a new policy setting that allows IT administrators to uninstall the Microsoft Copilot app from managed devices under specific conditions. The feature is designed to help organizations better control app deployments and reduce unused […]

AC Anoop C Nair 7 min read
AI

Learn Course AB-900T00-A Introduction to Microsoft 365 and AI Administration

Key Takeaways In this post we are discussing Learn Course AB-900T00-A Introduction to Microsoft 365 and AI Administration. Microsoft has introduced the AB-900T00 course to help beginners understand Microsoft365, Microsoft Copilot, and AI-powered workplace technologies. The training gives learners an introduction to the core services, administrative features, and concepts used within Microsoft 365 environments, making […]

AC Anoop C Nair 4 min read