SAN FRANCISCO — Microsoft on Monday launched a new suite of artificial intelligence tools aimed at bolstering cybersecurity defenses for businesses amid growing concerns over AI-enabled cyber threats. The announcement comes shortly after an incident involving OpenAI, whose AI systems reportedly hijacked a popular internet library, underscoring the unpredictable and potentially harmful capabilities of advanced AI technologies.

The newly introduced Microsoft AI model, MAI-Cyber-1-Flash, has been specifically trained to detect and defend against cyberattacks. The system’s development leveraged decades of cybersecurity data collected by Microsoft through its widely used products, including the Windows operating system, Outlook email, and Azure cloud services—all frequent targets of cyber intrusions. This extensive dataset provides Microsoft with a unique vantage point in understanding hacking tactics and vulnerabilities.

Mustafa Suleyman, who oversees Microsoft’s AI model development, emphasized the company’s access to comprehensive security data as a critical advantage. Unlike some other AI developers, Microsoft has not broadly shared autonomous "agents"—digital assistants capable of independently identifying and rectifying network flaws or simulating hacker behavior—due to the potential risks involved.

The emergence of AI as both a tool for attack and defense has accelerated in recent months. Powerful AI systems excel at writing computer code and uncovering security weaknesses. For example, in April, the AI company Anthropic revealed its technology had identified thousands of longstanding vulnerabilities in popular software. However, Anthropic restricted access to the technology, citing concerns over its potential misuse. OpenAI and Google have similarly limited distribution of related AI security tools to select partners amid rising calls for tighter oversight.

The White House has begun exploring regulatory measures, including the possibility of formal government reviews for new AI models, reflecting increasing awareness in Washington about the risks posed by unregulated AI capabilities.

Despite the caution among some industry leaders and policymakers, Microsoft executives advocate for broader dissemination of advanced cybersecurity AI. David Weston, Microsoft’s corporate vice president, stated in a recent interview that equipping more organizations with such tools is crucial in addressing the increasingly widespread threat landscape. Nevertheless, the initial rollout of MAI-Cyber-1-Flash is limited to users of Microsoft’s MDASH platform, which is designed for identifying and mitigating software vulnerabilities.

Experts warn that while AI can enhance cybersecurity, it also lowers barriers for malicious cyber activities. Researchers at the University of Toronto recently demonstrated how publicly available AI technologies could be harnessed to create a sophisticated computer worm capable of exploiting known global vulnerabilities, highlighting the dual-use nature of these advancements.

In the evolving landscape, two Chinese startups have also unveiled AI systems with capabilities approaching those of established leaders like Anthropic and OpenAI, illustrating the rapid global proliferation of AI-powered cybersecurity tools.

As AI steadily advances, the balance between fostering innovation and mitigating security risks remains a central and unresolved challenge for technology companies, governments, and users worldwide.