Microsoft Windows Update Changes Pause Windows 11 for 35 Days
Microsoft Windows Update Changes now let Windows 11 users pause installs for 35 days at a time, with no limit on extensions. For people who have had updates interrupt work in the middle of meetings, that means more control over when a restart lands on the desktop, but it also makes it easier to leave known vulnerabilities unpatched.
Aria Hanson said Microsoft had been reading feedback about the Windows update experience. She said two themes kept coming up: disruption from untimely updates and not enough control over when updates happen. In a Microsoft blog post, Hanson said, "We are continually reading the feedback submitted about the Windows update experience. Personally, I've had the opportunity to read over 7,621 direct verbatim over the last few months."
Windows 11 gets a 35-day pause
Users can now pause updates for 35 days at a time. They can hit pause again every 35 days. That means the delay can continue indefinitely if someone keeps extending it.
Alex Thompson called the new setup a "snooze button" that users can hit indefinitely. He said postponing updates for months can mean running Windows with known vulnerabilities that cybercriminals are already exploiting. He added that the average time between a security patch release and active exploitation is now just 14 days.
Security patch timing
Thompson said a user who delays updates for 6 months could be running software with 12+ unpatched security holes. Kevin Marriott said the moment a patch is released, the vulnerability is no longer a Zero-Day and becomes a N-Day. He said threat actors often analyze the patch to reverse engineer exactly what code was changed.
Marriott also said functional malware for a new patch can be circulating on dark web forums within hours of the update's release. Andy Ward said delaying Windows 11 updates creates a serious cyber resilience risk because patching is one of the most important ways to prevent serious cyber incidents and operational downtime.
Microsoft's balance problem
Hanson said the changes are focused on giving Windows users more control over their PC experience while keeping devices secure by design and by default. Microsoft has recently released emergency fixes, including an update for a false sign-in glitch on its PCs. That leaves the practical question sitting in front of users now: whether the convenience of repeated pauses is worth the longer exposure window that security researchers are warning about.