Barney's Blog

Blog archive

Doug's Mailbag: Patching Patch Tuesday

In honor of yesterday's Patch Tuesday, here are some reader thoughts on the Microsoft monthly tradition:

I have never been impressed with the thoroughness of Microsoft's development in regards to security. And I think it shows with the enormous amounts of patches that get distributed for every operating system and software program. I understand they can't catch everything, but wouldn't you think that after so many years of OS/software that you have to patch that it would be a good idea to secure systems before they come out -- instead of sending out ridiculous amounts of patches, which in turn usually slow machines/software down after so many get applied? But, what do I know? I am not a programmer.

As always, your columns and articles are informative and entertaining.
-Travis

I would like to see a comparison of patches released for other operating systems. I've seen similar lists in the past (maybe on CERN's site) that actually show MS operating systems require fewer patches than Mac OS and some Linux distributions. Your question is more relevant if compared to what competing operating systems require.
-Curtis

Whether I have two or 20 patches, if I have to reboot the server, the number of patches does not matter to me. Some people seem to make a big deal out of it. I'm just glad that bugs are being fixed. I'd rather have 20 patches, once a month, then have two patches this week, four more next week and so forth. And that's just my opinion...
-Bruce

I don't believe Microsoft has ever really been proactive about anything, and has been more of a reactive entity with regards to patches.

Although, maybe they are proactive in their new software and in the numerous ways they can just plain outright annoy you.
-Michael

Share your thoughts with the editors of this newsletter! Write to [email protected]. Letters printed in this newsletter may be edited for length and clarity, and will be credited by first name only (we do NOT print last names or e-mail addresses).

Posted by Doug Barney on August 11, 2010


Featured

  • Microsoft Dismantles RedVDS Cybercrime Marketplace Linked to $40M in Phishing Fraud

    In a coordinated action spanning the United States and the United Kingdom, Microsoft’s Digital Crimes Unit (DCU) and international law enforcement collaborators have taken down RedVDS, a subscription based cybercrime platform tied to an estimated $40 million in fraud losses in the U.S. since March 2025.

  • Sound Wave Illustration

    CrowdStrike's Acquisition of SGNL Aims to Strengthen Identity Security

    CrowdStrike signs definitive agreement to purchase SGNL, an identity security specialist, in a deal valued at about $740 million.

  • Microsoft Acquires Osmos, Automating Data Engineering inside Fabric

    In a strategic move to reduce time-consuming manual data preparation, Microsoft has acquired Seattle-based startup Osmos, specializing in agentic AI for data engineering.

  • Linux Foundation Unites Major Tech Firms to Launch Agentic AI Foundation

    The Linux Foundation today announced the creation of a new collaborative initiative — the Agentic AI Foundation (AAIF) — bringing together major AI and cloud players such as Microsoft, OpenAI, Anthropic and other major tech companies.