Particle.news

Microsoft Moves MDASH Into Expanded Preview and Embeds It in Enterprise Security Control Plane

MDASH proves exploitability, enriching vulnerability findings with Defender, GitHub, Purview and Copilot signals.

Overview

  • Microsoft announced at Build 2026 that MDASH is in expanded preview for eligible organizations and is being folded into its enterprise security control plane with Microsoft Defender integration.
  • MDASH is an agentic system that orchestrates a pipeline of more than 100 specialized AI agents to discover, validate and prove which vulnerabilities are truly exploitable.
  • The platform uses a model-agnostic ensemble that combines high-capability models for deep reasoning with lower-cost models for high-volume tasks to balance accuracy and cost.
  • Microsoft reported a CyberGym benchmark improvement to 96.55% and says MDASH enriches findings with production signals such as internet exposure and data sensitivity to prioritize real risks.
  • The company tied MDASH to developer workflows by enabling GitHub Copilot autofix and the Copilot cloud agent for AI-assisted fixes and announced related previews for Agent 365, Purview data protections and Defender model scanning.