Skip to content

Secure IT

Stay Secure. Stay Informed.

Primary Menu
  • Home
  • Sources
    • Krebs On Security
    • Security Week
    • The Hacker News
    • Schneier On Security
  • Home
  • Uncategorized
  • Krebs On Security
  • Microsoft Patches a Record 570 Security Flaws
  • Krebs On Security

Microsoft Patches a Record 570 Security Flaws

BrianKrebs Published: July 14, 2026 | Updated: August 31, 2026 3 min read
0 views

Microsoft Corp. today released software updates to plug at least 570 security holes in its Windows operating systems and other software, almost triple the number of vulnerabilities the software giant fixed in its record-smashing Patch Tuesday release last month. Microsoft attributed the burgeoning patch counts to vulnerability discoveries aided by artificial intelligence.

A picture of a windows laptop in its updating stage, saying do not turn off the computer.

Nearly 60 of the bugs quashed in July’s Patch Tuesday earned a “critical” severity rating, meaning miscreants or malware could use them to seize remote control over a Windows device with little or no help from the user. Microsoft also addressed three zero-day flaws, including two that are already being exploited in the wild.

Two of the zero-day weaknesses allow an attacker to elevate their user rights on a Windows system, as do approximately 250 other elevation of privilege flaws fixed this month; they include CVE-2026-56155 — an Active Directory Federation Services bug — and CVE-2026-56164, a Microsoft Sharepoint vulnerability.

CVE-2026-50661 is a security feature bypass in Windows BitLocker that could allow attackers to gain access to encrypted data if they have physical access to the device. Microsoft said this bug has been detailed publicly, but that it is not aware of any active exploitation.

In a blog post on July 9, Microsoft Executive Vice President Pavan Davuluri wrote that Windows users will notice “a higher volume of security updates included in each security release” as a result of AI aiding in the discovery of vulnerabilities.

“The pace of vulnerability discovery is changing with advances in AI making it possible to find more issues, faster, across more code, with new mechanisms that can accelerate both discovery and analysis,” Davuluri wrote.

Jack Bicer, director of vulnerability research at Action1, called attention to CVE-2026-48561, a remote code execution flaw in Microsoft Copilot (with a 9.6 CVSS threat score) that allows an unauthorized attacker to execute code over the network. Microsoft says an attacker could exploit this bug by hosting a malicious website that causes Microsoft Edge for Android to automatically send crafted prompts to Copilot when a user visits the site.

As AI advances the state of vulnerability discovery and remediation, it is also making it easier for attackers to quickly devise working exploits for known software flaws. Microsoft has long labeled security bugs using its “exploitability index,” which is Redmond’s best guess as to how likely it is that attackers will be able to figure out a reliable way to exploit a given vulnerability.

But Satnam Narang, senior staff research engineer at Tenable, argues that Microsoft’s exploitability index needs to do a better job of shifting with the machine speed of discovery. For example, Microsoft originally gave this month’s SharePoint zero-day an exploitability rating of “less likely,” although the flaw was added to CISA’s Known Exploited Vulnerabilities list on July 1.

“Anthropic’s Red Team’s own findings for known vulnerabilities (n-days) revealed how fragile this system has become, with its Mythos Preview model being able to produce proof-of-concept exploits for 13 of 14 vulnerabilities that were rated ‘Exploitation Less Likely’ or ‘Exploitation Unlikely,’” Narang said. “What this means is that our way of looking at Patch Tuesday has changed, because the exploitability index is centered around humans, not AI tools, and as these tools continue to improve, defense needs to improve alongside it.”

Chris Goettl at Ivanti observed that the record patch numbers from Microsoft come as a number of other major software makers are increasing their patch cadence, including Adobe which announced today it is moving to twice-monthly security bulletins published on the 2nd and 4th Tuesday of each month (Adobe also cited AI for accelerating their patch cycles). Cisco, Mozilla and Oracle also are shipping updates more frequently, while Google’s patch batches in June 2026 totaled more than 900 security fixes, Goettl noted.

Backing up your Windows system and/or data is always a good idea before applying operating system updates. Given the volume of patches addressed this month it may be wise for end users to wait a few days before applying these fixes. It’s not uncommon for security patches to introduce system stability issues, and those chances probably increase quite a bit with the gigantic patch count released today.

Further reading:

Action1’s Patch Tuesday blog

Automox’s rundown

About The Author

BrianKrebs

See author's posts

Original post here

What do you feel about this?

  • Krebs On Security

Post navigation

Previous: Lessons Learned from CISA’s Recent GitHub Leak
Next: LG to Ban Residential Proxies from Smart TV Apps

Author's Other Posts

FBI Probes Service Selling 153M+ Drivers Licenses nexus-phegseth.png

FBI Probes Service Selling 153M+ Drivers Licenses

September 1, 2026 0 0
Two Alleged ‘TeamPCP’ Hackers Arrested in Australia

Two Alleged ‘TeamPCP’ Hackers Arrested in Australia

August 31, 2026 0 0
Who’s Tracking You? Use This New Service to Find Out decryptads-ESPN.png

Who’s Tracking You? Use This New Service to Find Out

August 31, 2026 0 0
Microsoft Plugs Nearly 400 Security Holes workingonpc.png

Microsoft Plugs Nearly 400 Security Holes

August 31, 2026 0 0

Related Stories

nexus-phegseth.png
  • Krebs On Security

FBI Probes Service Selling 153M+ Drivers Licenses

BrianKrebs September 1, 2026 0 0
  • Krebs On Security

Two Alleged ‘TeamPCP’ Hackers Arrested in Australia

BrianKrebs August 31, 2026 0 0
decryptads-ESPN.png
  • Krebs On Security

Who’s Tracking You? Use This New Service to Find Out

BrianKrebs August 31, 2026 0 0
workingonpc.png
  • Krebs On Security

Microsoft Plugs Nearly 400 Security Holes

BrianKrebs August 31, 2026 0 0
moucka-surveillance.png
  • Krebs On Security

Canadian Man Pleads Guilty in Snowflake Extortions

BrianKrebs August 31, 2026 0 0
h96-amazon.png
  • Krebs On Security

Read This Before You Buy That TV Streaming Stick

BrianKrebs August 31, 2026 0 0

Trending Now

FBI Probes Service Selling 153M+ Drivers Licenses nexus-phegseth.png 1

FBI Probes Service Selling 153M+ Drivers Licenses

September 1, 2026 0 0
Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure jfrog.jpg 2

Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure

September 1, 2026 0 0
Breeze Comet Executes Hundreds of Fraudulent Transactions via Brazilian Payment Systems brazil.jpg 3

Breeze Comet Executes Hundreds of Fraudulent Transactions via Brazilian Payment Systems

September 1, 2026 0 0
13 Malicious Packagist Packages Target Unpatched iPhones to Steal Crypto Wallet Seeds iphone.jpg 4

13 Malicious Packagist Packages Target Unpatched iPhones to Steal Crypto Wallet Seeds

September 1, 2026 0 0

Connect with Us

Social menu is not set. You need to create menu and assign it to Social Menu on Menu Settings.

Trending News

FBI Probes Service Selling 153M+ Drivers Licenses nexus-phegseth.png 1
  • Krebs On Security

FBI Probes Service Selling 153M+ Drivers Licenses

September 1, 2026 0 0
Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure jfrog.jpg 2
  • The Hacker News

Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure

September 1, 2026 0 0
Breeze Comet Executes Hundreds of Fraudulent Transactions via Brazilian Payment Systems brazil.jpg 3
  • The Hacker News

Breeze Comet Executes Hundreds of Fraudulent Transactions via Brazilian Payment Systems

September 1, 2026 0 0
13 Malicious Packagist Packages Target Unpatched iPhones to Steal Crypto Wallet Seeds iphone.jpg 4
  • The Hacker News

13 Malicious Packagist Packages Target Unpatched iPhones to Steal Crypto Wallet Seeds

September 1, 2026 0 0
Iranian Hackers Pose as Recruiters to Deliver Cross-Platform RATs Through Coding Tests iran-hacking.jpg 5
  • The Hacker News

Iranian Hackers Pose as Recruiters to Deliver Cross-Platform RATs Through Coding Tests

September 1, 2026 0 0
Threat Actors Don’t Want Better Attacks. They Want Repeatable Ones click.jpg 6
  • The Hacker News

Threat Actors Don’t Want Better Attacks. They Want Repeatable Ones

September 1, 2026 0 0
Attackers Steal METR API Key and Consume AI Credits Worth About $600,000 metr.jpg 7
  • The Hacker News

Attackers Steal METR API Key and Consume AI Credits Worth About $600,000

September 1, 2026 0 0

You may have missed

nexus-phegseth.png
  • Krebs On Security

FBI Probes Service Selling 153M+ Drivers Licenses

BrianKrebs September 1, 2026 0 0
jfrog.jpg
  • The Hacker News

Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure

[email protected] The Hacker News September 1, 2026 0 0
brazil.jpg
  • The Hacker News

Breeze Comet Executes Hundreds of Fraudulent Transactions via Brazilian Payment Systems

[email protected] The Hacker News September 1, 2026 0 0
iphone.jpg
  • The Hacker News

13 Malicious Packagist Packages Target Unpatched iPhones to Steal Crypto Wallet Seeds

[email protected] The Hacker News September 1, 2026 0 0
Copyright © 2026 All rights reserved. | MoreNews by AF themes.