Windows users are now familiar with the system update process. Every month, sometimes more often, new updates will drop, which means your system will have to download the package, install the update and reboot. You can automate a lot of this by making sure updates happen on a schedule when you’re not using your computer, but it still happens regularly. Why does Windows constantly have to be updated like this? Surely there aren’t many new features added regularly.
There are many reasons why Windows Updates drop, but cadence has a lot more to do with performance and security than new features. Sometimes Windows may receive updates to improve system performance, improve compatibility with applications and devices, fix various software bugs or issues, and, perhaps most importantly, distribute security patches for potential vulnerabilities discovered by developers and researchers.
However, malicious threats are often discovered and malicious parties who would like to exploit them play a cat-and-mouse game with system developers: When attackers discover a new vulnerability and start exploiting it, system developers release security patches to stop it. This is precisely where Patch Tuesday comes into play: it is Microsoft’s scheduled release of system updates and security fixes. Ultimately, what happens to your computer if you ignore Windows Updates is never good.
How often are security vulnerabilities discovered?
In fact, security vulnerabilities are discovered quite often. The Cybersecurity and Infrastructure Security Agency (CISA) regularly issues security warnings and bulletins about known vulnerabilities that are being exploited – on many platforms, not just Windows. Meanwhile, the Common Vulnerabilities and Exposures (CVE) program is where these individual issues are reported. Microsoft has its own security portal allowing software engineers and researchers to also document discovered weaknesses. This information received helps Microsoft system developers understand and fix security vulnerabilities.
Then, every second Tuesday of the month – Patch Tuesday – these security fixes are deployed as a system update. Microsoft explains that all security updates are cumulative, meaning that applying the most recent updates, even if you don’t have previous versions installed, will ensure you get all previously released fixes. This is also why it’s important to install updates as soon as they become available and why you should ditch unsupported software versions. Windows 10 is no longer as secure as it used to be because Microsoft ended support for rolling updates. If you are still using Windows 10 and are not enrolled in the Extended Security Updates (ESU) program, you should consider doing so.
What about feature enhancements and non-security changes?
According to Microsoft’s release cycle information, security updates are released monthly, with major security patches or “out-of-band” versions released as needed. But Windows customers also get an annual feature update, usually in the second half of the year, which includes new system features, potentially new apps and services, and a major change for the Windows version. Periodically, although no definite schedule is specified, optional non-security updates may also include new features and improvements.
The Windows 11 February 2026 Preview Update introduced three new features, including a browser-based network speed test, minor system updates, and improvements to File Explorer performance and usability. However, a preliminary update is not considered part of the stable channel, which means that an official stable release always arrives later, in this case around March. But it’s a great example of how Microsoft continues to update the platform in useful ways beyond the usual security fixes.
