The number of vulnerabilities patched monthly has become the new norm — AI-driven vulnerability scanning tools are dramatically accelerating discovery and forcing faster remediation processes.
Of 206 patched vulnerabilities, 39 are classified as critical, including 56 remote code execution and 63 privilege escalation flaws, with three publicly disclosed zero-days.
A self-replicating worm compromises 73 Microsoft repositories through stolen administrative credentials, exploiting the trust model of GitHub and npm without leveraging software vulnerabilities.
AI systems require fundamentally new red-teaming approaches due to their probabilistic nature, which differ fundamentally from classical penetration testing.
Microsoft restored some GitHub repos after 73 open-source projects were compromised with information-stealer malware, while keeping others offline as the security investigation continues.
Microsoft disabled 73 GitHub repositories following a compromise by the Miasma worm, responding to a direct supply-chain attack on its developer infrastructure.
The Miasma worm spreads across Microsoft repositories on GitHub, demonstrating critical vulnerability of centrally managed development ecosystems to self-replicating attack malware.
Microsoft warns CTOs of seven new attack patterns on AI agents: from natural language injections through goal hijacking to visual attacks on computer-use agents.