[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fkOlH4tz6bHYdE8-OmgKTg903WBVu2Gpk0AdV72levYA":3},{"article":4,"iocs":55},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":11,"url":12,"image_url":13,"published_at":14,"ingested_at":15,"relevance_score":16,"entities":17,"category_id":32,"category":33,"article_tags":37},"b45aee41-f62d-4275-9e26-63370d9f3c4e","Microsoft Unveils MAI-Cyber-1-Flash, Its First Cybersecurity AI Model","microsoft-unveils-mai-cyber-1-flash-its-first-cybersecurity-ai-model-e5ab32","The company claims MAI-Cyber-1-Flash tops Anthropic’s Mythos and OpenAI’s GPT-5.6 Sol in CyberGym testing. The post Microsoft Unveils MAI-Cyber-1-Flash, Its First Cybersecurity AI Model appeared first on SecurityWeek.","Microsoft has introduced MAI-Cyber-1-Flash, its inaugural AI model specifically designed for cybersecurity tasks, particularly identifying complex code vulnerabilities. Integrated into the MDASH harness, it aims to outperform competitors like Anthropic's Mythos and OpenAI's GPT-5.6 Sol in vulnerability discovery, while also offering cost savings through efficient task allocation.","Microsoft launches MAI-Cyber-1-Flash, its first AI model for cybersecurity vulnerability discovery.","Microsoft has unveiled its first cybersecurity AI model, MAI-Cyber-1-Flash, which the company claims got significantly better results in finding vulnerabilities than its main competitors. MAI-Cyber-1-Flash, designed to identify challenging vulnerabilities in complex code, has been integrated into Microsoft’s MDASH multi-agent vulnerability identification and remediation harness. MDASH orchestrates more than 100 specialized AI agents across multiple frontier and distilled AI models, and has been used to find many vulnerabilities in the tech giant’s own codebases. According to Microsoft, testing in the CyberGym cybersecurity evaluation framework showed that MAI-Cyber-1-Flash (in combination with MDASH and GPT-5.4) topped Google’s recently launched 3.5 Flash Cyber, OpenAI’s GPT-5.6 Sol, and Anthropic’s Mythos 5 in vulnerability discovery. “MAI-Cyber-1-Flash was designed to efficiently handle up to 90% of all tasks, enabling MDASH to use the larger and most costly models in our fleet (in this case GPT-5.4) for the 10% of exceptionally hard tasks that truly need them,” Microsoft explained. The company added, “This combination delivers a 50% cost saving when compared against our best offering in MDASH today (GPT 5.4 + 5.4 mini + 5.3 codex). That’s the power of a well-tuned, multi-model system with access to uniquely rich historical training data.” MAI-Cyber-1-Flash is being offered through Project Perception, an agentic security offering that enables organizations to simulate attacks, detect and investigate threats, and fix vulnerabilities. Project Perception will enter public preview on August 3.Advertisement. Scroll to continue reading. “We see across identities, endpoints, applications, data, clouds and AI systems, providing broad visibility across the digital estate. Equally important, we can help customers take action across those environments,” Microsoft noted. Learn More at the AI Risk Summit | Ritz-Carlton, Half Moon Bay Related: Nvidia and Tech Giants Launch AI Security Alliance Related: OpenAI Says Its AI Models Broke Loose and Hacked Hugging Face Related: Anthropic’s Opus 5 Nears Mythos 5 on Finding Bugs, but Falls Short on Exploits Related: Nuclear-Sabotage Malware Benchmark Trips Up Most Frontier AI Models Written By Eduard Kovacs Eduard Kovacs (@EduardKovacs) is senior managing editor at SecurityWeek. He worked as a high school IT teacher before starting a career in journalism in 2011. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering. Daily Briefing Newsletter Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights. More from Eduard Kovacs Nvidia and Tech Giants Launch AI Security AllianceCoca-Cola Confirms Data Breach After Fairlife Ransomware AttackAnthropic’s Opus 5 Nears Mythos 5 on Finding Bugs, but Falls Short on ExploitsMCBS Data Breach Affects 1.2 Million IndividualsRockwell Patches Code Execution Flaws in Arena Simulation SoftwareData Breach Confirmed After Australian Energy Giant Origin Is HackedChick-fil-A Accounts Get Fried in Credential Stuffing AttackNuclear-Sabotage Malware Benchmark Trips Up Most Frontier AI Models Latest News Act Security Emerges from Stealth to Fight the Patch ProblemHacker Conversations: Tal Kollander’s Journey From Black Hat to Hack BlockerHush Security Raises $30 Million for AI Agent GovernanceGoogle Adopts New Threat Actor Naming SystemUnpatched Fastjson Vulnerability Exploited in AttacksCritical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-DayOrigin Energy Data Breach Affects 900,000 AustraliansFor Some, So-Called ‘Skynet Day’ Came too Close to Sci-Fi After a Rogue Agent Hacked Into a Startup Trending Daily Briefing NewsletterSubscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts. Webinar: Closing the Exploitation Gap July 22, 2026 Join this live webinar as we explore why exploitation is outpacing remediation, where risk is growing fastest, and what security leaders can do to close the gap before attackers take advantage. Register Virtual Event: CodeSecCon 2026 August 19, 2026 CodeSecCon bridges the gap between dev and security. Discover best practices for secure coding, innovative risk-reduction tools, and safe AI integration to cultivate a true DevSecOps culture. Safely secure your apps! Register People on the MoveBarry Childe has joined data sciences tech company Datavault AI as Chief Information Security Officer.John DeSimone, the former CEO of Nightwing, has been named Chief Operating Officer at Everfox.Sectigo has appointed Prem Hareesh as Corporate Chief Technology Officer.More People On The MoveExpert Insights Is Patching Dead? Vulnerability Management in the Post-Mythos Era You cannot out-patch a machine that writes a working exploit from a vulnerability description in twenty hours. Stop trying to optimize a game you cannot win. (Danelle Au) When Identity Verification Fails: Lessons from a Real-World SIM Swap and Near Account Takeover Identity confidence changes throughout every interaction and should be reassessed continuously as new risk signals emerge. (Torsten George) Legacy Systems, Real-World Impacts: The Reality of OT Security Legacy systems, safety concerns, and critical infrastructure risks make OT vulnerability disclosure one of cybersecurity's most challenging balancing acts. (Tod Beardsley) The Shift Toward Business-Aligned Risk Management Moving from isolated, technical data to a continuous risk lifecycle can help organizations align security controls with actual business consequences. (Steve Durbin) How to Conduct a Successful Audit of AI-Driven Software Development As AI-generated code becomes commonplace, CISOs need new audit strategies to measure developer practices, govern AI tool usage, and identify software risks before they reach production. (Matias Madou) Flipboard Reddit Whatsapp Whatsapp Email","https:\u002F\u002Fwww.securityweek.com\u002Fmicrosoft-unveils-mai-cyber-1-flash-its-first-cybersecurity-ai-model\u002F","https:\u002F\u002Fwww.securityweek.com\u002Fwp-content\u002Fuploads\u002F2026\u002F07\u002FAI-artificial-intelligence-model-frontier.webp","2026-07-28T11:11:48+00:00","2026-07-28T12:00:13.882267+00:00",7,[18,21,24,26,28,30],{"name":19,"type":20},"MAI-Cyber-1-Flash","product",{"name":22,"type":23},"Microsoft","vendor",{"name":25,"type":20},"MDASH",{"name":27,"type":20},"GPT-5.6 Sol",{"name":29,"type":23},"OpenAI",{"name":31,"type":23},"Anthropic","839da5c1-3c34-47e2-9499-f7201640e3ac",{"id":32,"icon":34,"name":35,"slug":36},null,"AI Security","ai-security",[38,43,48,50],{"category":39},{"id":40,"icon":34,"name":41,"slug":42},"02371804-cf6d-4449-98de-f1a2d4d9b266","Tools","tools",{"category":44},{"id":45,"icon":34,"name":46,"slug":47},"80544778-fabb-4dcd-aa35-17492e5dcf4f","Vulnerabilities","vulnerabilities",{"category":49},{"id":32,"icon":34,"name":35,"slug":36},{"category":51},{"id":52,"icon":34,"name":53,"slug":54},"e7b231c8-5f79-4465-8d38-1ef13aea5a14","Threat Intelligence","threat-intelligence",[]]