Microsoft Patch Process Called Security Risk
Patch Tuesday could be Exploit Tuesday if malicious hackers escalate the rate at which they reverse engineer security patches.
Imagine the mayhem when the usual crew of Chinese and Russian hackers start cranking out exploits against flaws with new patches in minutes instead of days. Automatic patch-based exploit generation has been discussed and tested by a group of academic researchers.
This research, cited by The Register, means Microsoft may not be able to outrun attackers and their networks of compromised bot machines. The researchers want Microsoft to change the way they issue patches, and suggested ways to do so.