Codename MDASHMicrosoft
|
MAI-Cyber-1-FlashMicrosoft
|
|||||
Related Products
|
||||||
About
Codename MDASH is an agentic code scanner in Microsoft Defender that uses a multi-model AI system to detect, validate, and remediate vulnerabilities with greater depth than traditional static analysis. It extends Defender CLI with a multistage pipeline in which specialized agents collaborate across four stages. Prepare ranks files by risk using call-graph analysis and code-complexity metrics, prioritizing functions most likely to contain vulnerabilities. Scan sends ranked code to more than 100 expert agents, including injection, memory-safety, and auth-bypass auditors, with each agent focused on a specific vulnerability class. Validate combines taint analysis, type resolution through Language Server Protocol servers, and multi-model agentic debate to refine confidence and reduce false positives. Dedup consolidates overlapping results into a final set of unique actionable findings.
|
About
MAI-Cyber-1-Flash is Microsoft AI’s compact, code-heavy security model for finding vulnerabilities in complex codebases. Derived from the MAI-Thinking-1 lineage and built from scratch on high-quality data, it is deeply integrated into MDASH, Microsoft’s multi-agent vulnerability identification and remediation harness. MDASH uses more than 100 expert-tuned agents and multiple leading models to find, validate, and remediate software vulnerabilities, while MAI-Cyber-1-Flash efficiently handles up to 90% of tasks. Exceptionally difficult cases can be routed to larger models such as GPT-5.4, creating a well-tuned multi-model system that selects the right model for each task. Together, MDASH and MAI-Cyber-1-Flash achieved 96% on CyberGym, outperforming Mythos, Gemini, and GPT-based alternatives in reasoning over large codebases to identify vulnerabilities.
|
|||||
Platforms Supported
Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook
|
Platforms Supported
Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook
|
|||||
Audience
DevSecOps teams managing large polyglot repositories that need deeper vulnerability detection and AI-assisted remediation inside existing delivery pipelines
|
Audience
Enterprise application security teams that need to continuously identify, validate, and remediate vulnerabilities across large codebases
|
|||||
Support
Phone Support
24/7 Live Support
Online
|
Support
Phone Support
24/7 Live Support
Online
|
|||||
API
Offers API
|
API
Offers API
|
|||||
Screenshots and Videos |
Screenshots and Videos |
|||||
Pricing
No information available.
Free Version
Free Trial
|
Pricing
No information available.
Free Version
Free Trial
|
|||||
Reviews/
|
Reviews/
|
|||||
Training
Documentation
Webinars
Live Online
In Person
|
Training
Documentation
Webinars
Live Online
In Person
|
|||||
Company InformationMicrosoft
Founded: 1975
United States
learn.microsoft.com/en-us/security-exposure-management/ai-code-security-overview
|
Company InformationMicrosoft
Founded: 1975
United States
microsoft.ai/news/introducing-mai-cyber-1-flash-inside-mdash/
|
|||||
Alternatives |
Alternatives |
|||||
|
|
|
|||||
|
|
|
|||||
|
|
|
|||||
|
|
|
|||||
Categories |
Categories |
|||||
|
|
|