If I'm being frivolous, does this mean Microsoft's model is best at fixing Microsoft products because they have trillions of data points on problems with Microsoft products
"You're absolutely right, I shouldn't have delete your entire C drive. That's on me."
In serious, this would be a good advantage for Microsoft to consider, I just doubt they'd do it well.
To defend properly, you need either either much more formally mathematically verified layers, or always-on online monitoring and intrusion detection running alongside the service. Like the immune system, or like guarding an empire's borders, since you can't put a guard on every meter of border. But you can detect when someone broke in and deploy your soldiers to respond. Currently we are trying to defend by building really hard walls that we hope cannot be pierced anywhere, which isn't realistic.
[wince]
We invented AGI.
There is a transparent 20px gap above the opaque screen-fixed header.
In theory, they have tons of network-type data and at least some Linux data from Azure. In practice... Good question...
Identity is somewhat standard-ish LDAP/Kerberos/OIDC (ok, sure, they've added a bit of creativity)
Let's say i use a linux endpoint and some hardware vendor starting with Cisc on the network. Can your product help me or not? I'm pretty sure none of these have been meant by Microsoft..but they fall into this category
They can’t decide on naming their product in Azure, let alone creating something useful or usable
Exhibit A-C
A. https://claude.com/blog B. https://microsoft.ai/news/introducing-mai-cyber-1-flash-insi... C. https://cursor.com/grok
Only OpenAI's blog looks like the WordPress _Twenty Twenty Five_ theme.
And I am 90% sure that Claude design was used to build the website.
Their cash cow customers are doofuses that decide over government contracts to be wined & dined, their best employees use macbooks, it's a sad shell of what has been.
Do they want to fix Microsoft Products ?
My laptop came with Windows 11. Windows update broke hibernate few weeks back. When laptop gets out of hibernate - Wifi works for a few minutes and then once in a while the Wifi Adapter isn't detected. I need to reboot to fix the issue, this has screwed up my workflow. Wasting a lot of time.
After troubleshooting a lot, I now only hope one day it gets fixed on it's own thanks to some new update.
If Microsoft has money to invest in AI models, they could sure fix Windows 11 which I assume is one of their core products.
I wish in a few years Microsoft realize that screwing over their Desktop users to chase Cloud and AI wasn't worth it. And by that time it's too late to get back the user base.
On the other hand, what's the return on investment for making Windows 11 better? Your laptop came with Windows 11. Most laptops that come with Windows can't not come with Windows (that is, most laptops are only available in SKUs that ship with Windows).
Which is precisely why I've preferred the Solarized Light Theme for years now.
I wouldn't be surprised if they added MAI-Cyber 1 there too.
Edit: I'm enjoying seeing all the other examples linked in the responses. I decided to make a public Semble collection (https://semble.so/profile/vadhub.bsky.social/collections/3mr...) to track more, feel free to add to this!
(Having lived through the late 90s .com stuff, I can't see the word "cyber" without immediately assuming the person who wrote it is a clueless baby boomer. Unfortunately it seems to have become accepted into the lexicon. I guess by us now-clueless GenXers?)
Compare the Open AI and Deepmind pages:
* https://openai.com/index/gpt-5-system-card/
* https://deepmind.google/blog/announcing-google-deepmind/
This is a topic I really enjoy thinking about and I wonder if someone has explored it. It was just before the pandemic when Balenciaga rebranded where it struck me that something crazy had happened. The top fashion houses were taking their brand inspiration from Apple! I was looking at a Rimowa and it looks like an Apple mark. And Balenciaga, and Burberry (before their most recent rebrand)
The flat geometric sans wordmark and product marks wasn't an Apple original but it is definitely given full high-quality luxury status through Apple's adoption. It could just have been an idea whose time had come (Microsoft's Metro etc. existed) but if you look at the iPhone, they were already using the flat sans Myriad font at the time.
Someone more acquainted with design and art will have to tell me if this is real because when I saw it I swear it was like everyone was trying to associate with this language that was popularized by Apple. But maybe they were just copying tech because tech were the top dogs of the age. And now perhaps everyone will copy AI labs which will all copy Anthropic because Anthropic are the big dogs of this age.
Look at it, though! It's striking how much everything looks like it descended from iPhone. People were saying the Balenciaga logo looks like a phone contact!
Windows OS is what keeps most users in Microsoft's ecosystem.
I am still on Windows as some software I need to use aren't on Linux.
I am waiting for the day that I can get rid of Windows completely.
When I do that what Microsoft product do you think I will still use ? Office ? Azure ? Copilot ? :)) Outlook ?
No MSFT product ever!
Will I ever recommended Microsoft's products to my clients - Never
Sure, Microsoft has a grip on Enterprise.
Let's see how long that lasts if Windows keeps going downhill.
"Sign up to join the private preview"
https://www.designandpaper.com/they-are-calling-it-a-sans-se...
Assume a hypothetical future where all that software gets ported to Linux. How much better would Windows have to get for you to keep using it?
I suspect they've done the math and realize that the slow trickle of users leaving would cost too much time and effort to retain.
But backwards compatibility isn't actually that hard if you're not horrendously mismanaged to begin with. You have some ancient miserable APIs from the 1990s that you still have to support, fine, but that's not actually that bad. Old APIs tend to be small because computers were small that far back, you write a compatibility layer and can keep using it. By definition the old stuff never changes so you only have to do it once.
The actual problem is that Microsoft is full of little fiefdoms. Because what they should do, after becoming a huge behemoth with the resources to do it (which has been the case for more than two decades), is to design a set of good, modern APIs, also only once. Something that you're happy to support forever because you took the time to get it right. Then you only have to support that and the little compatibility layer for truly ancient software.
Instead, they have an army of middle managers who are practically at war with each other to show that they can introduce some kind of novel "improvement", the vast majority of which quickly fall out of favor but then have to be supported indefinitely if you don't want to break backwards compatibility. And that makes backwards compatibility a huge ordeal because every year there is more poorly-engineered rubbish you have to support forever.
Same. I feel amused, disgusted and disdain at the same time.
Sprinkle in some irritation that even for a big product launch not a single human in the chain could be bothered to sit down and devote their attention to writing a page on why this product matters and why we should care..
I do agree with you on this.
But as a consumer that's not my concern.
I am at least a Windows user since three decades, I know my way around the OS and did extensive troubleshooting. What happens to a normal Windows user ?
I have developed habits and workflow on my machine to optimize my time. Now every time I get back to work I am hoping that it works coming out of hibernate.
Is that how a modern OS should be ?
I have a Windows 10 machine that has stopped getting updates. I am satisfied with that.
I consider that Windows 10 machine 'reliable' now that Microsoft isn't breaking things for me.
You've got to call it something, and calling it "cyber" differentiates it from all the other kinds of security. I doubt it means much to talk about "security" to the government, that could as much mean a missile system, but I don't know, that's not my area of work.
To us developers who work with computing all day it feels cringe because the cyber part is implied, and "security" is the differentiator., so you can just talk about working in "security" or "infosec".
Is "cyber" a bit of a relic that dates when the government started taking it seriously? Of course, but I don't know if there is a good alternative that doesn't have other connotations. It probably also acts as a bit of a shibboleth in both directions, "cyber" for those in the government sphere, "infosec" in the commercial.
It seems that others like that though.
tbh all of this has always struck me as an ego thing from the MAI team, who are mostly based in Silicon Valley, not Redmond, and think of themselves as too cool for Microsoft
Picking the right model for the task
Security is an always-on mission, and given the enormous volume of inbound attacks, token cost is now the real constraint for defenders. MAI-Cyber-1-Flash was designed to efficiently handle up to 90% of all tasks, enabling MDASH to use the larger and most costly models in our fleet (in this case GPT-5.4) for the 10% of exceptionally hard tasks that truly need them.
The result is that the unified system of MDASH with MAI-Cyber-1-Flash delivers 96% on CyberGym (+12 pt above Mythos).
This combination delivers a 50% cost saving when compared against our best offering in MDASH today (GPT 5.4 + 5.4 mini + 5.3 codex). That’s the power of a well-tuned, multi-model system with access to uniquely rich historical training data. It ensures you always have the best model at the best price for every task.
In this new environment, being able to go from identifying a new vulnerability to addressing it in real-time is critical. And while AI remediation of software vulnerabilities is now a key security workflow, there are many jobs to be done by Security practitioners themselves.
That’s why today we’re also launching Perception, our agentic security systems, that provides teams of agents for a variety of security workflows in MDASH, to continuously monitor, patch, and close new threat vectors. Perception will also soon use MAI-Cyber-1-Flash for many more security workflows, beyond the software vulnerability work.
Three things matter today: Model. Data. Harness.
We have jointly optimized our world-class models, our unmatched historic data, and our expert-tuned harness to ensure that our customers have a uniquely powerful security offering.
Model. MAI-Cyber-1-Flash is a compact, code-heavy security model derived from the MAI-Thinking-1 lineage, which was built from scratch, in-house, on the highest quality data. Details in our technical report.
Data. Our deepest advantage. Decades of building world-class security systems now give us trillions of daily signals across identity, endpoint, cloud, and network, and an unmatched record of real exploits and remediations. No one can manufacture this history.
Harness. MDASH, our multi-agent vulnerability identification and remediation harness, is tuned by the best security experts in the industry, who have created 100+ agents using multiple leading models to find, validate, and remediate vulnerabilities. Agentic code scanning is a critical function in the Security Operating Center and feeds Project Perception, our new agentic security system.
**Built with safety first
**
Because MAI-Cyber-1-Flash is Microsoft’s first cyber model, we built trust into every layer of the system, from model training to customer deployment. The model was developed with a security-first calibration, rigorously evaluated by Microsoft’s AI Red Team, tested through automated and expert-led adversarial exercises, and independently assessed by a third party.
Trust extends beyond the model itself. Through MDASH, customers get enterprise-grade controls including Role-Based Controls, tenant isolation, encryption, auditability, and sandboxed execution environments with no internet access. The result is a cyber model that delivers powerful capabilities to defenders while maintaining the governance, security, and control enterprises expect from Microsoft.
Our hill-climbing machine
Cybersecurity is not just a data-rich domain; it is a live reinforcement learning loop. Every day, defenders investigate threats, triage alerts, hunt adversaries, remediate vulnerabilities, deploy protections, and learn from the outcome.
Microsoft sees that loop end to end: vulnerabilities through Microsoft Security Response Center; attacks and defenses across identity, endpoint, cloud, data, browser, and applications; more than 100 trillion security signals every day; and operational insight from 1.6 million customers. Because we can connect actions to outcomes; what was exploitable, what was contained, what was blocked, and what actually worked; we have more than data.
Our MAI reinforcement learning loop gives us the foundation to build cyber models that improve continuously and become expert cyber defenders. That’ll remain our commitment to our customers for years to come.