Just to give some perspective to the fact that exploits are publicly released a day after (or the day of) the MS patch release, HD Moore comments in this Microsoft Bluehat video that exploits are normally developed about 3 months before the patch is released.
This is really no surprise to any security researcher that discovered a security vulnerability and submitted it to a major vendor; but it should put some perspective to the often heard argument that “the time between patch release and exploit time is shrinking”.
Popularity: 2%
