- Researchers uncovered “Download more RAM” flaw in consumer DDR4/DDR5 memory
- Attack bypassed Windows VBS and HVCI, disabling antivirus and protections
- Microsoft patched CVE‑2026‑23670; tools now help enable memory write protection
Microsoft has recently fixed a vulnerability that allowed threat actors to bypass advanced security measures, disable antivirus software, and expose the target device to full system takeover.