Microsoft is expanding its use of artificial intelligence to identify software vulnerabilities faster and improve the security of large codebases.

The company’s Multi-Model Agentic Scanning Harness (MDASH) uses multiple AI models and specialized security agents to analyze code, detect potential vulnerabilities, and validate whether identified flaws are exploitable. The system is designed to go beyond traditional static analysis by improving the depth and accuracy of AI-assisted security testing.

Microsoft says the technology can help security teams discover vulnerabilities at a larger scale while reducing false positives. High-confidence findings can then be reviewed by human engineers, helping organizations prioritize critical security issues and accelerate remediation.

Why It Matters

As AI accelerates vulnerability discovery, organizations may be able to identify and fix security flaws earlier in the software development lifecycle. However, human expertise remains essential for validating findings, assessing risk, and developing reliable security patches.

Conclusion

Microsoft’s AI vulnerability discovery initiative highlights the growing role of agentic AI in cybersecurity. By combining automated code analysis with human security expertise, organizations may be better equipped to detect vulnerabilities and strengthen software security at scale.