Microsoft is poised to break another Patch Tuesday record on September 8, marking the third such milestone in a few months, according to sources familiar with the company’s security operations. The upcoming release is expected to include more than 650 security fixes for Windows alone, a figure roughly six times the number of patches Microsoft typically issued before the arrival of new AI-driven vulnerability discovery tools. The surge follows a summer of unprecedented activity for Windows and security engineers, who have been verifying fixes for remote code vulnerabilities, privilege escalations, and other critical flaws.
The record-setting pace began in April, when Anthropic’s Mythos model identified security vulnerabilities across every major operating system and web browser. Shortly thereafter, OpenAI released its own cybersecurity-focused model to trusted partners. Both AI systems have contributed to the spike in discovered flaws, leading to a June Patch Tuesday that set a new record with around 200 fixes, followed by July’s release with at least 570 patches - nearly triple the June count. August offered a slight reprieve, with engineers plugging nearly 400 security holes before September’s expected surge.
The increased volume of patches is straining IT administrators at businesses that rely on Microsoft software. These teams typically test each patch to ensure it does not disrupt critical applications, a process that can create a “patch gap” between disclosure and deployment. Anthropic found earlier this year that its Mythos model could generate working exploits for newly disclosed vulnerabilities within hours, rather than weeks, raising the stakes for organizations slow to apply fixes.
The risk is especially acute for remote code vulnerabilities that hackers can easily exploit. Microsoft, like other software companies, is racing to identify and fix weaknesses before malicious actors can use advanced AI to target undiscovered flaws in Windows, Azure, and other products. While the company is issuing an unusual number of patches, the sheer scale of monthly disclosures is putting pressure on businesses to close the patch gap quickly.
Cybersecurity experts note that the patch gap has always been a risk, but the AI era has intensified the challenge. With hundreds of vulnerabilities now surfacing monthly, Microsoft and other vendors are likely to repeat warnings about applying patches immediately upon release. The current record may not stand for long, particularly if further advances in AI models accelerate vulnerability discovery.
Separately, sources indicate that Microsoft plans to delay the PlayStation 5 release of Forza Horizon 6, pushing it from its previously announced later-this-year window into early 2027. The delay is reportedly tied to coordinating the PS5 launch with the game’s first expansion, rather than any technical issue. Forza Horizon 6 debuted on Xbox and PC on May 15, and the PS5 version is expected to arrive before the game’s first anniversary. The previous title in the series, Forza Horizon 5, performed well on PS5 after Microsoft brought it to Sony’s console last year.
More cybersecurity news from TechManNews.




