Microsoft's Project Perception, an Agentic Cyber-Defense System, Enters Public Preview
Microsoft's new security platform pairs a purpose-built cybersecurity model, MAI-Cyber-1-Flash, with red, blue and green AI agents that probe, investigate and remediate threats; public preview opened August 3 through Microsoft Defender.
Microsoft opened public preview on August 3 for Project Perception, an agentic security system it first unveiled on July 27 alongside MAI-Cyber-1-Flash, the company's first cybersecurity-specific in-house model. The platform is initially available through Microsoft Defender, with support for additional Microsoft Security products planned to follow.
How the agents divide the work
Project Perception organizes its AI agents into three roles modeled on a security operations team. Red agents probe an environment for exploitable paths the way an attacker would, looking for weaknesses before real adversaries find them. Blue agents investigate the signals red agents and existing telemetry surface, triaging which findings represent genuine risk rather than noise. Green agents then write and deploy the fixes — patching configurations and hardening defenses. Microsoft says high-impact actions still require human sign-off rather than running fully autonomously, and the three agent types are meant to hand off findings to each other through orchestrated workflows instead of relying on manual handoffs between security teams.
MAI-Cyber-1-Flash and benchmark results
Underpinning the agents is MAI-Cyber-1-Flash, a model Microsoft built specifically to reason over security-specific data and threats rather than adapting a general-purpose model. On CyberGym, a public benchmark covering 1,507 vulnerability-reproduction tasks, Microsoft reported that its detection system running on MAI-Cyber-1-Flash scored 95.95%. Pricing is consumption-based, metered in what Microsoft calls Security Compute Units (SCUs), with more demanding agent tasks consuming units at a higher rate than lighter ones.
Why it matters
Project Perception is Microsoft's clearest bet yet that security operations should shift from agents that alert humans to agents that act — probing, triaging and patching with a human only in the loop for consequential decisions. It also extends Microsoft's push to ship purpose-built models rather than routing every workload through general-purpose ones, following a similar pattern to its other specialized in-house releases this year. For an industry already worried about AI being used offensively, Microsoft is explicitly betting that agentic defense can outpace agentic attack — a wager the security industry will be watching closely as Project Perception moves from preview toward general availability.
Sources
AI-assisted reporting, overseen by the AgentsAI team. Spotted an error? Let us know.
More agents news
Cognition Launches SWE-2, a Cheaper Coding Model Built Into Devin
Cognition released SWE-2, a coding model post-trained from Moonshot AI's open-weight Kimi K3, that it says nearly matches Claude Fable 5.1 on the FrontierCode 1.1 benchmark at roughly 64% lower cost, and shipped it immediately inside Devin.
Salesforce Launches Seven 'Job-Ready' Agentforce Agents and a Long-Horizon Runtime
Salesforce unveiled seven named Agentforce agents built for specific roles across sales, service, HR and supply chain, plus a new runtime that lets an agent pursue a goal over days or weeks instead of a single session.
OpenAI Opens Its Codex Agent Harness to Developers With New Agents API
OpenAI launched the Agents API in public beta, giving developers direct access to the same orchestration harness that powers Codex — session management, context compaction, subagents and sandboxed execution — behind a single API.
Cognition Closes $2B Series E for Devin at $48 Billion Valuation
The maker of autonomous coding agent Devin closed a Series E round of more than $2 billion at a $48 billion valuation, nearly doubling its worth four months after its last raise as run-rate revenue approached $900 million.