24/7 SupportCustomer StoriesCareers Talk to an IT Expert
Infrastructure

"Remind me tomorrow": the update you keep postponing is the one they are counting on

Most successful attacks use a flaw that was fixed months earlier. Patching is unglamorous, mildly disruptive and the single most effective security control there is.

Every computer in your office has, at some point, shown a message asking to restart for updates, and every person has clicked "remind me tomorrow". Multiply that by every workstation, server, firewall, phone system and printer, and you have a business running on software with known, published, documented holes.

Why it matters more than it feels

When a vendor publishes a fix, they also publish — in effect — a description of the hole. Attackers read those. Within days there are automated tools looking for anything unpatched. The window between "fix available" and "actively exploited" is now often a week or less.

What gets forgotten

  • Firewalls and switches — the devices that protect everything else are the most neglected.
  • Servers, because rebooting them is inconvenient.
  • The phone system, cameras and anything with a web page you log into.
  • Applications, not just Windows — the PDF reader, the browser, the accounting package.

Doing it without the disruption

Patching properly is a schedule, not an event: workstation updates tested on a small group first, then rolled out overnight; servers rebooted in an agreed window with someone watching; firmware on network equipment kept current and change-controlled. That is exactly what a managed service does every week, and why our customers rarely see the restart prompt at all — it happened at 11 p.m. on Tuesday, and the report says so.

One Partner. Every Technology. Every Location. Around the Clock.

Have a question about your environment?

SecureConnectedSupported24/7