Microsoft Plugs Nearly 400 Security Holes

Microsoft’s August Patch Tuesday delivered a massive 398 security updates for Windows operating systems and supported software. This is just one of several recent record-breaking patches from the tech giant, which has attributed its success in part to the use of artificial intelligence (AI) in vulnerability discovery.

The sheer number of flaws patched this month may be daunting for some users, but it’s essential to understand that Microsoft’s efforts are aimed at preventing exploitation by malicious actors. Of the 398 vulnerabilities addressed, a staggering 42 have been rated “critical,” meaning they could allow attackers to gain remote control over a Windows computer with minimal user interaction.

One of these critical flaws, CVE-2026-68820, is particularly noteworthy. It’s a privilege escalation weakness in the core Windows component called afd.sys, which handles socket connections on every endpoint. Automox has described this bug as “step two” in a chain attack, where an attacker first gains low-privilege access and then uses the driver flaw to escalate privileges.

Another publicly disclosed flaw, CVE-2026-62832, is also related to privilege escalation and may be connected to recent research by Nightmare Eclipse. While Microsoft has labeled this vulnerability as likely to be exploited, it’s essential for users to understand that most of these patched flaws are not actively being targeted by attackers at the moment.

The increasing use of AI in vulnerability discovery and patching is a significant trend in the cybersecurity industry. Other major software makers like Adobe, Cisco, Google, Mozilla, and Oracle are also adopting more frequent and robust patch schedules. However, researchers have raised concerns about the limitations of AI-generated patches, with some studies suggesting that these fixes may introduce new vulnerabilities or fail to address existing ones.

Experts agree that human involvement is still essential in the patching process. Ed Skoudis, president of SANS Technology Institute, emphasizes the importance of iterative improvements and testing in ensuring reliable patching. “AI can be an extraordinary patching partner,” he says, “but it still needs a skilled human at the keyboard.”

In light of these developments, security leaders should take this opportunity to reassess their teams’ workload management strategies. With the increasing number of patches and updates, it’s essential to prioritize thorough testing before deploying fixes in production environments. As Tyler Reguly from Fortra cautions, “only one of the almost 400 bugs addressed today is known to be actively exploited.” While Microsoft’s efforts are a testament to its commitment to security, users should remain vigilant and take proactive steps to protect themselves against emerging threats.

Ultimately, this patching frenzy serves as a reminder that cybersecurity is an ongoing process. Users must stay informed about the latest vulnerabilities and updates, prioritize thorough testing, and engage with their teams to ensure effective management of increasing workloads.


Source: Krebs on Security — 2026-08-11