All NewsEducationTVBrokers
Equities & FundsCrypto & Digital AssetsAI & TechnologyBusiness & CorporateUS Politics & PolicyGeopolitics & Global RiskMacro, Rates & FXCommodities & EnergyEuropean Politics & MarketsAsia-PacificReal Estate & Property
All NewsHome
← Back to AI & Technology

Microsoft Patches Record 972 Vulnerabilities, 112 Critical

Created at 8 Sep · 9:16 PM1 source↑ Market-relevant
IN SHORT

Microsoft's latest security update addresses a record 972 vulnerabilities, with 112 classified as critical. This surge in patched bugs reflects an industry-wide effort to combat the growing threat of AI-enabled cyberattacks.

Key Numbers

972vulnerabilities patched by Microsoft
112critical vulnerabilities
2,760vulnerabilities fixed by Microsoft this year
100companies and organizations warning of AI attacks

Who's Involved

Microsoft
released a record-breaking security patch
Dustin Childs
Zero Day Initiative researcher calling the trend the 'new normal'
OpenAI
co-signed a letter warning of AI-enabled attacks
Anthropic
co-signed a letter warning of AI-enabled attacks
Amazon Web Services
co-signed a letter warning of AI-enabled attacks
Google
co-signed a letter warning of AI-enabled attacks
Microsoft Patches Record 972 Vulnerabilities, 112 Critical

↳ Why This Matters

The record number of critical vulnerabilities patched by Microsoft underscores the escalating cybersecurity threat landscape, particularly with the anticipated rise of AI-enabled attacks. This situation necessitates increased vigilance and rapid patching by organizations to mitigate potential damage.

Key facts

  • Microsoft's September patch addresses a record 972 vulnerabilities.
  • 112 of the patched vulnerabilities are rated critical.
  • Two zero-day vulnerabilities affecting Windows update services were included.
  • The high volume of patches is attributed to the increasing threat of AI-enabled cyberattacks.
  • Microsoft has fixed 2,760 vulnerabilities this year, more than double last year's total.

Microsoft has released its September security update, addressing an unprecedented 972 vulnerabilities, with 112 of them classified as critical. This marks a significant increase from previous patch cycles, with the company having already fixed 2,760 vulnerabilities this year, more than double the number from the previous year.

This surge in patched bugs is seen as a response to the growing threat of AI-enabled cyberattacks. Industry leaders, including OpenAI, Anthropic, Amazon Web Services, Google, and Microsoft, recently published an open letter warning of a narrowing window to patch vulnerabilities ahead of an expected wave of AI-driven exploits. Dustin Childs, a researcher at the Zero Day Initiative, described the high volume of patches as the 'new normal' in cybersecurity, while cautioning that the potential damage from AI-assisted attacks could still be substantial.

Among the notable vulnerabilities addressed are two zero-days: CVE-2026-81963 in the Windows update service and CVE-2026-85880 in the Windows Advanced Local Procedure. While there is no public information on their exploitation, their inclusion highlights the ongoing efforts to secure software against emerging threats.

Frequently asked questions

It represents a record number of vulnerabilities fixed in a single patch release, indicating a heightened focus on security and the increasing complexity of software vulnerabilities.

The increase is attributed to the growing threat of AI-enabled cyberattacks, prompting companies to proactively identify and fix vulnerabilities.

Zero-day vulnerabilities are security flaws that are unknown to the software vendor and for which no patch exists, making them particularly dangerous as they can be exploited before a fix is available.

It refers to the current state where companies are releasing an unprecedented number of software patches due to the rapid advancement of vulnerability discovery, including AI-assisted methods.

What Happens Next

01Microsoft is expected to continue releasing regular security updates.
02The cybersecurity industry will likely see continued efforts to counter AI-driven threats.
CME Headlines
  • Risk Management and Monitoring Notice: Multi-Factor Authentication Updates - September 12
    3 Sep · 5:00 AM

How It Developed

Microsoft released a security update patching a record number of vulnerabilities.
The update addresses approximately 972 vulnerabilities, with 112 rated critical.
This follows previous record-breaking patch releases from Microsoft and other tech companies.
Industry leaders have warned of an impending increase in AI-enabled cyberattacks.
A researcher described the high volume of patches as the 'new normal' in cybersecurity.
Two zero-day vulnerabilities, CVE-2026-81963 and CVE-2026-85880, were included in the release.

Sources

T1
Microsoft patches a record 972 vulnerabilities, 112 of them criticalvar abtest_2170941 = new ABTest(2170941, 'impression');Ars Technica

Related Stories

Chrome Adopts Bi-Weekly Updates Amid AI-Driven Security Landscape Shifts
8 Sep · 3:31 PM
Ledger CTO Calls for Responsible AI Bug Disclosure
8 Sep · 10:16 AM
Google's AI weather model integrates more satellite data
8 Sep · 6:06 PM
Google Cloud partners with Accenture to boost enterprise AI adoption
8 Sep · 4:31 PM
China's top court issues AI guidelines on deepfakes and privacy
8 Sep · 11:21 AM