HP Printers Susceptible to Online Attack
Many of us update our software or install the latest antivirus programs to reduce the chances of becoming the victims of a hacker. But is it possible for our hardware components to entice hackers as well?
Hewlett-Packard recently issued a warning to select laser printer owners urging them to update the firmware of their devices or risk the prospect of leaving themselves open to a malicious attack.
In a public advisory, HP warned that certain laser printers are confirmed to have been affected, including 10 different LaserJet models (ranging from the 2410 to the 9050 models), two Color LaserJet models and the 9200C Digital Sender model (a sheet-fed document scanner). (Source: com.au)
All owners of these devices are asked to download and install firmware upgrades right away.
The computer glitch was discovered by the security services firm Digital Defense, who later reported the problem to Hewlett-Packard.
Apparently, hackers are able to exploit a bug in the web-based control interface of the printer. Basically, an uninvited guest has the potential to rummage through your arbitrary system configuration files and look over some of your cached documents.
Why bother with an attack of this kind?
Digital Defense believes that the thrill of exposing vulnerability, more than having access to restricted files, is what drives certain people to malicious behavior. These people are using directory transversal attacks to target innocent people.
A directory transversal attack is an HTTP-based exploit that lets hackers access restricted directories and execute commands outside of the server's root directory.
While some analysts have downplayed the severity of outsiders being able to view printer configurations, others are nevertheless concerned over the invasion of privacy that these attacks perpetuate. (Source: macworld.co.uk)
Those turned off by the prospect of downloading and installing security patches also have the option of simply disabling the online control interface and running their laser printer offline.
In any case, users are urged to act fast in deciding to patch or disable their printers in an effort to reduce or eliminate the prospect of becoming the victim of an attack.
Most popular articles
- Which Processor is Better: Intel or AMD? - Explained
- How to Prevent Ransomware in 2018 - 10 Steps
- 5 Best Anti Ransomware Software Free
- How to Fix: Computer / Network Infected with Ransomware (10 Steps)
- How to Fix: Your Computer is Infected, Call This Number (Scam)
- Scammed by Informatico Experts? Here's What to Do
- Scammed by Smart PC Experts? Here's What to Do
- Scammed by Right PC Experts? Here's What to Do
- Scammed by PC / Web Network Experts? Here's What to Do
- How to Fix: Windows Update Won't Update
- Explained: Do I need a VPN? Are VPNs Safe for Online Banking?
- Explained: VPN vs Proxy; What's the Difference?
- Explained: Difference Between VPN Server and VPN (Service)
- Forgot Password? How to: Reset Any Password: Windows Vista, 7, 8, 10
- How to: Use a Firewall to Block Full Screen Ads on Android
- Explained: Absolute Best way to Limit Data on Android
- Explained: Difference Between Dark Web, Deep Net, Darknet and More
- Explained: If I Reset Windows 10 will it Remove Malware?
My name is Dennis Faas and I am a senior systems administrator and IT technical analyst specializing in cyber crimes (sextortion / blackmail / tech support scams) with over 30 years experience; I also run this website! If you need technical assistance , I can help. Click here to email me now; optionally, you can review my resume here. You can also read how I can fix your computer over the Internet (also includes user reviews).
We are BBB Accredited
We are BBB accredited (A+ rating), celebrating 21 years of excellence! Click to view our rating on the BBB.