And so you are an expert on threats I see.Well said. People who deliberately don't enable automatic system patching are the reason we have so many successful, high impact virus and malware outbreaks. If they don't mind their personal information being stolen, go right ahead. I however put faith in my operating system's authors being on top of keeping my machine as secure as a machine not unplugged and 6 foot under in a titanium vault can be.
In the 25+ years I have been building my own machines, I never had automatic Windows Update enabled, nor have I ever, not even one time in that time period in case there is a lack of understanding the word "never", gotten a virus. I pick and choose my updates, I have an isolated lan behind a stealth firewall, I don't visit sites that have hidden payloads, and I disable all software extras when I do download. I know how to recognize scam / payload e-mail. Until a few years ago, I never ran AV software either. Now that I do, I have never once had it tell me it caught a virus.
From my experience, it is people who are absolutely clueless and do things just because they can that get all kinds of malware because they install all kinds of crap just because they can. My father-in-law is just such an example. I spent four-hours one day cleaning his machine manually - yes, that means registry and all - manually - because he has no clue about what malware is and just decides something along the lines of "oh, this looks cool, so I'll install it." Then he asked me if that happens to me. My simple answer to him was NO because I don't install all the crap you do.
As I see it, it is very difficult for anyone who really knows what they are doing to have their machine compromised by any of these holes that are constantly patched.
When I first started building my own PCs, updates were notoriously unreliable and usually always broke something, and that is why I started not automatically updating. Updates have gotten better over the years, but I will say it again, it is pretty difficult for those who are knowledgeable to get any sort of crap on their machine. At this point, I have one machine out of eight that I have automatic updates enabled, but I am questioning why.