CISOOnline

Microsoft warns patch window is collapsing, urges shift to network-level containment

Microsoft is warning that the window for patching vulnerabilities is rapidly shrinking, as attackers move from disclosure to exploitation faster than enterprises can safely deploy fixes, and is urging organizations to adopt network-level controls to limit exposure during that gap.

In a blog post, Igor Sakhnov, corporate vice president and general manager for Azure Networking at Microsoft, said the traditional model of vulnerability management “increasingly reflects a world that no longer exists,” as modern attack timelines compress while enterprise processes remain unchanged.

“When a vulnerability was disclosed, organizations had time to understand the issue, assess affected systems, test patches, coordinate change windows, and deploy fixes before widespread exploitation occurred,” Sakhnov wrote. “Today that timeline is rapidly shrinking.”



Source link