Particle.news

Microsoft Ships Record Patch Tuesday With 622 Fixes

AI-assisted scanning drove the surge in discovered bugs and is forcing organizations to rethink how they prioritize, harden, and deploy security updates.

Overview

  • Microsoft released its July Patch Tuesday on July 14, 2026, publishing a Security Update Guide entry that counts 622 patched vulnerabilities across Windows, Office and other products.
  • Two flaws were confirmed as actively exploited in the wild: CVE-2026-56155 in Active Directory Federation Services and CVE-2026-56164 in on-premises SharePoint Server, and both were added to CISA’s Known Exploited Vulnerabilities catalog with urgent hardening guidance.
  • A third vulnerability, CVE-2026-50661, is a BitLocker protection-bypass that was publicly disclosed before a patch but has not been observed in active exploitation.
  • Microsoft attributes the spike to its MDASH multi-model agentic scanning system and other AI tools, which accelerate both discovery and the speed at which attackers can develop exploits, shrinking defenders’ testing windows.
  • Security vendors and US agencies are urging a shift from CVSS-only triage to exploit-aware prioritization using KEV and EPSS, rapid hardening of exposed identity and collaboration services, and treating patching as a continuous, funded operational program.