Microsoft Scrambles to Fix Security Hole in Vista, Server 2008

REDMOND, Wash. — Microsoft has alerted users to a critical security hole in both Windows Vista and Windows Server 2008. The flaw does not affect users of Windows 7.

The flaw leaves both operating systems vulnerable to malicious remote control, though in many cases, the systems will simply stop responding and restart.

Microsoft Server 2008 is the tech giant’s latest entry into server-management operating systems. The security flaw specifically affects Microsoft Server’s server message block, or SMB, functionality. SMB functionality oversees shared access to files, printers, serial ports and other communications.

"Microsoft is investigating new public reports of a possible vulnerability in Microsoft Server Message Block (SMB) implementation," Microsoft said. "We are not aware of attacks that try to use the reported vulnerabilities or of customer impact at this time."

Admins and other tech professionals should be advised that the security breach is what’s known as a “zero-day” flaw, meaning that hackers figured it out before Microsoft did.

But that doesn’t mean Microsoft is waiting around. The company has enlisted the aid of other security software companies to plug the hole. Microsoft may be forced to release an extra patch outside of its usual software release cycle to address the problem.

Users who are still working with the “release candidate” version of Windows 7 are still vulnerable to the attack. Release candidates are preliminary versions of software that companies distribute in hopes of ferreting out bugs and other problems.

The final version of Windows 7 is not vulnerable to the flaw. Neither are Windows XP or Windows 2000.

Related:  

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Lawsuit Alleging Meta Pirated VMG Content Will Move Forward

A U.S. district court on Thursday rejected Facebook parent company Meta’s motion to dismiss a suit by Vixen Media Group owner Strike 3 Holdings, which accuses Meta of pirating VMG content to train its artificial intelligence models.

Playboy Partners With Creator Platform Tango

Playboy has partnered with creator platform Tango, introducing Playmates to the livestreaming service.

Anti-Porn Senator Introduces Federal Age Verification Bill

U.S. Senator Jim Banks of Indiana, who last month urged the Department of Justice to ramp up obscenity prosecutions, on Wednesday introduced a bill that would make age verification by adult websites federal law.

AEBN Publishes Popular Searches by Country for April, May

AEBN has released the list of popular searches from its straight and gay theaters, by country, for April and May.

Ondato Joins Pineapple Support as Sponsor

Age and identity verification company Ondato has joined the ranks of over 70 adult businesses and organizations committing funds and resources to Pineapple Support.

2026 XBIZ Amsterdam Website Now Live, Registration Opens

XBIZ is pleased to announce that the website for its annual European conference, XBIZ Amsterdam, is now live.

MyMember.site Integrates FSC's 'PrivateAV' Age Verification Solution

MyMember.site has integrated Free Speech Coalition's PrivateAV age verification tool into its website-building platform.

Pearl Industry Network Opens Beta for Creator Networking App

Industry trade group Pearl Industry Network (PiN) has launched beta testing for the PiN Member App, a networking and collaboration tool for content creators.

FSC: W.V. Age Verification Law Takes Effect June 12

The Free Speech Coalition has issued a reminder notice that West Virginia's age verification law takes effect on June 12, 2026.

Pineapple Support Taps Brad Mitchell, Jean-Micheal Veen for Senior Leadership Positions

Pineapple Support has named Brad Mitchell as its new board president and Jean-Micheal Veen as technology and development chair.

Show More