Microsoft has patched 112 vulnerabilities in January 2026, including CVE-2026-20805, a Desktop Window Manager zero-day that attackers are actively exploiting.
Once up and running, that malicious DLL file pops a Python interpreter onto the system, which runs a script to create a ...