Summary
Researchers have discovered a critical Windows vulnerability, dubbed "Download more RAM," that could allow attackers to disable antivirus software and bypass advanced security measures with minimal user interaction. The flaw, tracked as CVE-2026-23670, exploits consumer DDR4/DDR5 memory chips to create memory aliases, enabling system takeover, but Microsoft has since patched the issue in its April 2026 Patch Tuesday update.