Mythos has made 2026 patching hell. It might make 2027 a breeze
Gartner sees huge amounts of technical debt paid down, and better scanning that could make software safer sooner
Microsoft released over 970 patches last week, causing concern among security professionals. Gartner research vice president Craig Lawson believes that AI-powered vulnerability discovery tools, such as Anthropic's Mythos, may soon lead to an easier patching experience in 2027. Lawson explained that the sheer volume of vulnerability discoveries made possible by these AI tools could be finding most of the flaws in established codebases.
He cited the recent series of CVEs found in OpenBSD as proof that AI bug-hunters are effectively cleaning up technical debt in products. Lawson noted that security vendors are also utilizing AI to find flaws in their own products, further indicating that AI is reducing potential avenues for zero-day attacks. With more bugs being detected and addressed through AI, Lawson predicts a decrease in CVE numbers in 2027, with a possible drop in severity of flaws.
AI could also make defenders' lives easier by enabling daily red-teaming exercises and helping analysts identify fixes more quickly. Rather than focusing solely on the number of tickets processed and closed, Lawson encourages organizations to celebrate the impact of their work, such as keeping a hospital open or preventing a ransomware attack.
Written by urgent.news from The Register's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.
This story
This is one outlet's version. Read the fullest account.
- Mythos has made 2026 patching hell. It might make 2027 a breeze theregister.com