Every computer in your office has, at some point, shown a message asking to restart for updates, and every person has clicked "remind me tomorrow". Multiply that by every workstation, server, firewall, phone system and printer, and you have a business running on software with known, published, documented holes.
Why it matters more than it feels
When a vendor publishes a fix, they also publish — in effect — a description of the hole. Attackers read those. Within days there are automated tools looking for anything unpatched. The window between "fix available" and "actively exploited" is now often a week or less.
What gets forgotten
- Firewalls and switches — the devices that protect everything else are the most neglected.
- Servers, because rebooting them is inconvenient.
- The phone system, cameras and anything with a web page you log into.
- Applications, not just Windows — the PDF reader, the browser, the accounting package.
Doing it without the disruption
Patching properly is a schedule, not an event: workstation updates tested on a small group first, then rolled out overnight; servers rebooted in an agreed window with someone watching; firmware on network equipment kept current and change-controlled. That is exactly what a managed service does every week, and why our customers rarely see the restart prompt at all — it happened at 11 p.m. on Tuesday, and the report says so.

