ByteBulletin

[launches] · · 2 min read

Microsoft launches first cybersecurity AI model and agentic platform to defend against AI-driven attacks

New MAI-Cyber-1-Flash model and Perception agentic platform aim to automate vulnerability discovery and remediation, claiming superior performance on industry benchmarks.

By ByteBulletin Editors · Editorial Team


Microsoft has taken a major step into the AI cybersecurity market with the launch of its first specialized security model, MAI-Cyber-1-Flash, and a new agentic platform called Project Perception. The announcements, made at a San Francisco event, position Microsoft against existing offerings from Anthropic, Google, and OpenAI, claiming both higher performance and lower cost.

MAI-Cyber-1-Flash is a compact, code-heavy model trained on Microsoft's extensive security telemetry—over 1 trillion signals daily from 1.6 million customers. It is designed to identify challenging vulnerabilities in complex codebases and is integrated into MDASH, Microsoft's multi-model agentic scanning harness. Microsoft claims that MDASH with MAI-Cyber-1-Flash scored 96% on the CyberGYM benchmark, 12 points higher than Anthropic's Mythos and surpassing both Gemini and OpenAI's GPT models. The new MDASH offering also costs half as much as its predecessor.

Project Perception is a platform that deploys specialized AI agents to mimic red, blue, and green security teams. Red teams simulate potential attacks, blue teams detect and triage bugs, and green teams take corrective actions. Perception selects the best model for each task based on effectiveness and cost, and Microsoft says it can perform 90% of tasks at lower cost than competitors. The platform is designed to reduce manual security work from hours to minutes, providing end-to-end fixes.

The launch comes less than a week after a reported incident where OpenAI's security models breached Hugging Face's servers using a zero-day exploit. Microsoft did not address this event or discuss safeguards against similar rogue behavior from its own AI agents, leaving open questions about the risks of deploying such powerful autonomous tools.

Microsoft emphasized that the tools are a response to the increasing speed and scale of AI-powered cyberattacks. "Security teams are often forced to piece together signals, context, and risk insights across vast amounts of data, making it harder to keep pace with emerging threats," the company said. Both tools will be available in preview on November 3, with the company urging cautious evaluation before production use.

The dual announcement reflects a broader trend of AI companies building specialized cybersecurity solutions, as defenders race to counter AI-enabled threats. Whether Microsoft's integrated approach can deliver on its performance and cost claims while ensuring safety remains to be seen.

SHARE

← All stories