Security
Windows 0-day fixed as CISA adds CVE-2026-20805 — Patch ASAP
* Key takeaways: * Microsoft patched CVE-2026-20805, an ALPC info-disclosure zero-day discovered by its threat-intel team. * CISA added the flaw to its Known Exploited Vulnerabilities catalog; federal agencies must patch by Feb 3. * The flaw leaks a memory address (undermining ASLR) and has been observed in active attacks; patching is the primary