Quality Ink, Big Savings, Every Page! 🖨️✨”

Printer Refills

Ink Cartridges

Printers

New Printer Vulnerabilities Highlight Urgency for Firmware Updates

A recent zero-day research project conducted by Rapid7 revealed the discovery of eight new vulnerabilities in multifunction printers, with one critical flaw rated at 9.8. The vulnerabilities were identified in printers from five leading vendors, including Brother Industries, Fujifilm Business Innovation, Ricoh, Toshiba Tec Corporation, and Konica Minolta. Rapid7 collaborated with IPCERT/CC and Brother Industries to uncover a total of 748 affected models.

Epson Workforce Pro WF-3825 Multifunction Printer, Black, C11CJ07502

Epson Workforce Pro WF-3825 Multifunction Printer, Black, C11CJ07502 | $148.00

The research highlighted the importance of firmware updates, with seven bugs addressed through firmware updates while a workaround was provided for the critical authentication bypass flaw. Stephen Fewer, principal security researcher at Rapid7, emphasized the need for security teams to verify that firmware updates have been successfully applied to each device. He also stressed the significance of addressing the authentication bypass flaw promptly by manually changing default administrator passwords on affected devices.

Brother HL-L2445DW, Wireless Mono Laser Printer, 32ppm, Black

Brother HL-L2445DW, Wireless Mono Laser Printer, 32ppm, Black | $158.00

John Gallagher, Vice President at Viakoo, pointed out that printers, often overlooked in terms of security, pose a significant risk when left unpatched. He highlighted the prevalence of printers in critical sectors like healthcare, where patient information stored on printers could be targeted by threat actors. Gallagher emphasized the need for vigilant patching and maintenance to mitigate risks associated with unsecured printers.

Canon PIXMA TS7760 Home 3-in-1 Printer

Canon PIXMA TS7760 Home 3-in-1 Printer | $98.00

David Matalon, CEO at Venn, underscored the broader issue of expanding threat surfaces as employees work outside corporate perimeters. He emphasized the importance of protecting company data independently of the device or network used for access, urging organizations to consider all potential vulnerabilities, including unmanaged printers and smart devices connected to external networks.

Canon PIXMA TS3660 Home Printer, Black

Canon PIXMA TS3660 Home Printer, Black | $54.00

Furthermore, Rapid7 provided guidance on responding effectively to the printer vulnerabilities. Security teams were advised to assess their exposure by identifying deployed printer models, create a remediation plan to update affected devices, and implement defense-in-depth measures such as removing exposed printer devices across network segments and enabling automatic firmware updates.

HP DeskJet 2820e All-in-One Printer, Color, Printer for Home, Print, Copy, Scan, Wireless Printing, Apple AirPrint, Google...

HP DeskJet 2820e All-in-One Printer, Color, Printer for Home, Print, Copy, Scan, Wireless Printing, Apple AirPrint, Google… | $48.00

These findings serve as a reminder of the evolving security landscape and the critical need for organizations to prioritize the protection of all network-connected devices, including printers. As cyber threats continue to target vulnerabilities in various devices, proactive measures such as timely patching, firmware updates, and robust security protocols are essential to safeguard sensitive information and mitigate potential risks.

HP ENVY Inspire 7920e All-in-One Color Printer, for Work, Study, Office and Business with Print, Scan and Copy (242Q2D)

HP ENVY Inspire 7920e All-in-One Color Printer, for Work, Study, Office and Business with Print, Scan and Copy (242Q2D) | $98.00

📰 Related Articles


📚Book Titles