Powered by MOMENTUMMEDIA
For breaking news and daily updates, subscribe to our newsletter

Microsoft unveils MAI-Cyber-1-Flash, promising fast, low-cost vulnerability detection

The software giant says its new model and expanded MDASH platform improve software vulnerability detection while cutting AI operating costs by 50 per cent.

Wed, 29 Jul 2026
Microsoft unveils MAI-Cyber-1-Flash, promising fast, low-cost vulnerability detection

Microsoft has unveiled a new cyber security-focused AI model designed to help organisations identify and remediate software vulnerabilities more efficiently, as the company looks to strengthen AI-powered cyber defence.

The new model, MAI-Cyber-1-Flash, is integrated into Microsoft's MDASH multi-agent vulnerability identification and remediation platform.

“Today, we are announcing a series of updates that give customers frontier-grade security at half the cost,” Microsoft’s CEO & Chairman, Satya Nadella, said in a July 27 statement.

 
 

“MAI-Cyber-1-Flash is our first cyber security model, built ground up to find the most challenging vulnerabilities in complex code bases. When combined with MDASH, it delivers world-class performance at 50 per cent of the cost of leading models.”

Rather than relying on a single large language model, MDASH uses a multi-model approach, assigning MAI-Cyber-1-Flash to handle around 90 per cent of vulnerability analysis tasks and reserving larger, more computationally expensive models for the most complex cases. Microsoft said this architecture achieved a 96 per cent score on the CyberGym benchmark, outperforming competing models including Mythos, Gemini, and GPT.

Alongside the new model, Microsoft also announced Perception, an agentic security system that uses teams of AI agents to automate security workflows including vulnerability monitoring, patching and remediation.

The company said Perception will increasingly leverage MAI-Cyber-1-Flash across a broader range of security operations beyond software vulnerability management.

Microsoft attributed the platform's performance to three components: a cybersecurity-specific AI model, decades of proprietary security telemetry and a multi-agent orchestration layer refined by security researchers.

“We are bringing this capability to market through Project Perception, a complete agentic security offering grounded in real-world signals and security workflows,” Nadella said.

“Teams of specialised agents work together to simulate attacks, detect and triage/investigate, and fix and remediate.”

Microsoft also emphasised the platform's security controls, saying MAI-Cyber-1-Flash was developed using a security-first approach and evaluated through internal red teaming, adversarial testing and independent third-party assessment. Enterprise deployments include role-based access controls, tenant isolation, encryption, audit logging and sandboxed execution environments without internet access.

“This is the benefit of building the harness, context/signals, and action space separate from one model family,” Nadella said.

“By combining specialised models and data with the right agents, tools, security context, and harness, we can advance the frontier of cost to outcome.”

Cyber DailyWant to see more stories from trusted news sources?
Make Cyber Daily a preferred news source on Google.
Tags:

David Hollingworth

David Hollingworth has been writing about technology for over 20 years, and has worked for a range of print and online titles in his career. He is enjoying getting to grips with cyber security, especially when it lets him talk about Lego.