微软发布 Windows 混合智能与智能体管控
微软公布以“混合智能”(Hybrid Intelligence)为核心的 Windows 战略,让 Copilot 与第三方智能体在本地或云端执行任务,并保持用户与 IT 的管控权。Microsoft Execution Containers(MXC)已在 Windows 11 正式可用,可在运行时强制文件与网络访问策略,并通过 Agent 365 与 Intune 管理智能体身份;Codex、GitHub Copilot 与 OpenClaw 已支持 MXC,Claude Code、Perplexity、Raycast 将随后跟进,Meta 的 Muse for Windows 将以原生应用形式集成 MXC。微软同时介绍 MAI Code 1.1 Flash(3-bit 精度,体积缩小近 80%,本地 256K 上下文)、Windows ML 对 llama.cpp 的支持、GitHub HydraFusion 的云端/端侧路由,以及本地 AI 硬件,包括最高 128 GB 统一内存的 Surface Laptop Ultra(已开启预订,10 月 16 日上市)和支持最高一万亿参数模型的 DGX Station for Windows。
为什么重要:这说明在 Windows 上,智能体的沙箱隔离与身份管理,正与模型能力一样成为平台竞争的关键。
Microsoft has unveiled a Windows strategy built around “hybrid intelligence,” combining local and cloud AI so agents can run each task where it belongs while staying under user and IT control. The push spans Windows 11, Copilot+ PCs, developer tools and computers for local AI workloads.
We’re supercharging Copilot on Windows with Hybrid Intelligence.
With your permission, Copilot can tap into the context on your PC, take action for you, and use local models when it makes sense, giving you more capability while helping your tokens go further. pic.twitter.com/7YvqHh8RKT
— Satya Nadella (@satyanadella) October 7, 2026
Microsoft Execution Containers are now generally available on Windows 11. MXC lets organizations define which files and networks an agent may access, with policies enforced at runtime. It pairs containment with agent identity and management through Agent 365 and Intune, allowing IT to separate an agent’s actions from those of the device user. Codex, GitHub Copilot and OpenClaw already support MXC. Claude Code, Perplexity and Raycast are due to follow, while Meta’s Muse for Windows is coming as a native app with MXC integration.
Microsoft is also moving larger models onto PCs. MAI Code 1.1 Flash uses 3-bit precision to cut its size by nearly 80% while retaining a 256K local context window. Windows ML is gaining llama.cpp support across GPU, NPU and CPU. GitHub HydraFusion will route work between cloud and on-device models in experimental previews for the GitHub Copilot app, GitHub Copilot CLI and Visual Studio Code later in October.
— Microsoft AI (@MicrosoftAI) October 7, 2026
With permission, Copilot will use this hybrid layer on Copilot+ PCs to draw on local files and recent activity, perform Windows actions and call models running on the device. The capabilities are expected to begin rolling out in the coming months across Copilot Home, Code and Autopilot.
A new generation of Surface is here. pic.twitter.com/TEsVzs8Pma
— Microsoft Surface (@surface) October 7, 2026
The hardware plan ranges from always-on mini PCs to RTX Spark builder machines and DGX Station systems. Surface Laptop Ultra, with up to 128 GB of unified memory and support for models above 120 billion parameters, is available for pre-order and arrives October 16. DGX Station for Windows systems supporting models up to one trillion parameters are due later this year. Windows Search actions will also let Insiders toggle settings, manage windows and send messages from the taskbar. Microsoft is tying Windows, Copilot, GitHub, Surface and NVIDIA hardware into one platform for secure agents and local AI, from personal PCs to shared enterprise compute.
Sources and related context
- Microsoft Execution Containers: Policy-driven containment for AI agents: Supports: The developer announcement confirms MXC's general availability and runtime enforcement of file and network access policies.
- Bringing local models and sandboxed tools to Windows and GitHub Copilot: Related context: The technical deep dive explains MAI Code 1.1 Flash's local memory requirements and Copilot's automatic routing and explicit local model selection.
前因后果
- 你能拦住失控的AI智能体吗?TechRadar推出科幻式安全测试TechRadar · Meta Muse
- 前白宫AI顾问Krishnan拟募资5亿美元风投基金The Information · Microsoft
- Replit 桌面应用预览版登陆 WindowsReplit · Microsoft
- 微软 Copilot 升级:可访问本地文件并跨系统操作The Verge AI · Microsoft
- 微软把 Windows 搜索菜单变成聊天机器人Engadget AI · Microsoft
- GitHub 用 AI 模型在推送前拦截密钥泄露GitHub Blog · AI & ML · Microsoft