Cybersecurity remains a front-line concern, all the more so given the latest developments in artificial intelligence. Where hackers once needed weeks of painstaking work to build a system capable of trapping their victims, AI now lets them do the same job in a handful of hours.
Microsoft’s security experts have weighed in, warning that a number of cybercriminals are exploiting advanced AI systems to launch attacks against Windows 11. The only real defense, they say, is to apply security updates as soon as they are released. Delaying a patch by even a few days can meaningfully raise the odds of a successful attack.
Why AI makes cyberattacks easier
With AI in hand, attackers can identify and exploit operating-system vulnerabilities in a fraction of the time it used to take. This is technology that can analyze vast amounts of code in minutes, flagging exposed weak points as it goes.
The numbers give a clearer sense of how fast the phenomenon is growing. According to Microsoft, the security patch released in June alone fixed 206 vulnerabilities, six of them zero-day exploits (flaws already being used in the wild before a fix exists). In February, the count was 64, a sign that the risks are mounting by the day.
Thanks to AI, it becomes far simpler for attackers to automate the search for and exploitation of these flaws at scale, maximizing the reach of their criminal campaigns.
Why you need to update your operating system
Microsoft has warned that no one should delay Windows 11 updates by more than three days, whether they are an ordinary user or an executive at a large company with dozens of sensitive documents saved on their machine. The reasoning is straightforward: AI analyzes vulnerabilities and generates working exploits within hours, opening the door to ransomware, data theft, privacy breaches and other serious risks.
Relying on automatic patch installation is no longer enough either, since the check for new versions often happens hours or even days late. The recommendation is to verify that all critical updates have been correctly applied within three days of their release.
The same goes, above all, for IT managers responsible for networks of hundreds or thousands of employees. Postponing new system versions out of fear they might be incompatible with work software can expose the entire organization to AI-driven attacks with disastrous consequences.
Editor’s note
This article was originally published in Italian on money.it by Pasquale Conte on July 15, 2026 as «L’intelligenza artificiale può creare attacchi informatici in poche ore. L’avvertimento di Microsoft». It has been translated and adapted for an international audience by the Money.it International desk.