CVE-2026-85880 (Windows ALPC heap overflow) and CVE-2026-81963 (Windows Update Stack) were added to CISA’s Known Exploited Vulnerabilities catalog after confirmed active exploitation. Both allow an already-authenticated local attacker to escalate to SYSTEM privileges. The federal remediation deadline for both is today, and fixes have been available since Microsoft’s September Patch Tuesday.

Join the waitlist

Tell me which exam you're sitting and I'll let you know the moment your guide is ready. People on the list get early access and launch pricing.

← Back

You're on the list

Thanks. I'll email you when your guide is ready, and I'll reply if you told me your background.
Which exams(required)

The Lowdown, by email

New posts on Microsoft security and Azure, exam changes as they happen, and first word when the guides launch.

You'll get a confirmation email first. Unsubscribe any time from the link in every email.