{"id":304027,"date":"2021-07-20T22:39:09","date_gmt":"2021-07-20T19:39:09","guid":{"rendered":"https:\/\/en.buradabiliyorum.com\/hackers-exploit-a-16-year-old-bug-in-some-printers-to-take-over-your-machine-review-geek\/"},"modified":"2021-07-20T22:39:09","modified_gmt":"2021-07-20T19:39:09","slug":"hackers-exploit-a-16-year-old-bug-in-some-printers-to-take-over-your-machine-review-geek","status":"publish","type":"post","link":"https:\/\/buradabiliyorum.com\/en\/hackers-exploit-a-16-year-old-bug-in-some-printers-to-take-over-your-machine-review-geek\/","title":{"rendered":"#Hackers Exploit a 16-Year Old Bug in Some Printers to Take Over Your Machine \u2013 Review Geek"},"content":{"rendered":"<p><strong>&#8220;#Hackers Exploit a 16-Year Old Bug in Some Printers to Take Over Your Machine \u2013 Review Geek&#8221;<\/strong><\/p>\n<div id=\"article-content-area\">\n<figure style=\"width: 1920px\" class=\"wp-caption alignnone\"><img loading=\"lazy\" decoding=\"async\" class=\"type:primaryImage wp-image-92715 size-full\" srcset=\"https:\/\/www.reviewgeek.com\/p\/uploads\/2021\/07\/ca06b36d.png?width=400 400w, https:\/\/www.reviewgeek.com\/p\/uploads\/2021\/07\/ca06b36d.png?width=1200 1200w\" sizes=\"auto, 400w, 1200w\" src=\"https:\/\/www.reviewgeek.com\/p\/uploads\/2021\/07\/ca06b36d.png?width=1200\" alt=\"Printer and computer on office table\" width=\"1920\" height=\"1080\" data-crediturl=\"https:\/\/www.shutterstock.com\/image-photo\/printer-computer-office-table-412370797\" data-credittext=\"FabrikaSimf\/Shutterstock.com\" onload=\"pagespeed.lazyLoadImages.loadIfVisibleAndMaybeBeacon(this);\" onerror=\"this.onerror=null;pagespeed.lazyLoadImages.loadIfVisibleAndMaybeBeacon(this);\"\/><figcaption class=\"wp-caption-text\"><span class=\"type:primaryImage imagecredit\"><a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.shutterstock.com\/image-photo\/printer-computer-office-table-412370797\">FabrikaSimf\/Shutterstock.com<\/a><\/span><\/figcaption><\/figure>\n<p>A bug that\u2019s been hidden for 16 years has <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/16-year-old-bug-in-printer-software-gives-hackers-admin-rights\/\">just been discovered<\/a>, allowing hackers who exploit it to gain administrator rights on any systems using the software. The vulnerability was found in software used by old printers from several major brands, including Xerox, Samsung, and HP.<\/p>\n<p>The security flaw was recently detected by SentinelLabs, and has been released to millions of printers across the globe. \u201cThis high severity vulnerability, which has been present in HP, Samsung, and Xerox printer software since 2005, affects hundreds of millions of devices and millions of users worldwide,\u201d the <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/labs.sentinelone.com\/cve-2021-3438-16-years-in-hiding-millions-of-printers-worldwide-vulnerable\/\">report stated<\/a>.<\/p>\n<p>The bug, logged as <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2021-3438\">CVE-202103438<\/a>, is a buffer overflow in the SSPORT.SYS driver in certain printers (like HP\u2019s LaserJet products) that is capable of granting a local escalation of user privileges. The researchers discerned that that software is installed with the printer software and gets loaded by Windows upon each reboot.<\/p>\n<p>SentinelOne <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/labs.sentinelone.com\/cve-2021-3438-16-years-in-hiding-millions-of-printers-worldwide-vulnerable\/\">explained<\/a>, \u201cSuccessfully exploiting a driver vulnerability might allow attackers to potentially install programs, view, change, encrypt or delete data, or create new accounts with full user rights.\u201d Such access would enable attackers to bypass security measures that would normally prevent attacks or the delivery of malicious payloads.<\/p>\n<figure style=\"width: 1600px\" class=\"wp-caption alignnone\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-92716 size-full\" src=\"https:\/\/www.reviewgeek.com\/p\/uploads\/2021\/07\/47c1674c-1.png\" alt=\"Digital crime by an anonymous hacker\" width=\"1600\" height=\"900\" data-crediturl=\"https:\/\/www.shutterstock.com\/image-photo\/digital-crime-by-anonymous-hacker-1095422036\" data-credittext=\"Rawpixel.com\/Shutterstock.com\" onload=\"pagespeed.lazyLoadImages.loadIfVisibleAndMaybeBeacon(this);\" onerror=\"this.onerror=null;pagespeed.lazyLoadImages.loadIfVisibleAndMaybeBeacon(this);\"\/><figcaption class=\"wp-caption-text\"><span class=\"imagecredit\"><a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.shutterstock.com\/image-photo\/digital-crime-by-anonymous-hacker-1095422036\">Rawpixel.com\/Shutterstock.com<\/a><\/span><\/figcaption><\/figure>\n<p>The vulnerability can be exploited even if the device isn\u2019t connected to the computer, which potentially makes it super easy for hackers to escalate and abuse privileges. However, local user access is required to successfully exploit the flaw, which will likely stop the bulk of threat actors from doing anything.<\/p>\n<p>Want to see if your printer model is using the affected driver? Check out the device lists in Xerox\u2019s <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/securitydocs.business.xerox.com\/wp-content\/uploads\/2021\/05\/cert_Security_Mini_Bulletin_XRX21K_for_B2XX_PH30xx_3260_3320_WC3025_32xx_33xx.pdf\">security bulletin<\/a> and in HP\u2019s <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/support.hp.com\/us-en\/document\/ish_3900395-3833905-16\/hpsbpi03724\">security advisory<\/a>. SentinelLabs researchers said, \u201cSome Windows machines may already have this driver without even running a dedicated installation file since this driver comes with Microsoft Windows via Windows Update.\u201d<\/p>\n<p>The two companies are advising all enterprise- and home-use customers to <a href=\"https:\/\/buradabiliyorum.com\/en\/category\/download-scripts-themes-apps\/\" data-internallinksmanager029f6b8e52c=\"9\" title=\"Download Scripts &amp; Themes &amp; Apps\" target=\"_blank\" rel=\"noopener\">app<\/a>ly the security patch they\u2019re providing as soon as possible.<\/p>\n<p><small>via <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/16-year-old-bug-in-printer-software-gives-hackers-admin-rights\/\">Bleeping Computer<\/a><\/small>\n<\/div>\n<p><script>\nsetTimeout(function(){\n  !function(f,b,e,v,n,t,s)\n  {if(f.fbq)return;n=f.fbq=function(){n.callMethod?\n  n.callMethod.apply(n,arguments):n.queue.push(arguments)};\n  if(!f._fbq)f._fbq=n;n.push=n;n.loaded=!0;n.version='2.0';\n  n.queue=[];t=b.createElement(e);t.async=!0;\n  t.src=v;s=b.getElementsByTagName(e)[0];\n  s.parentNode.insertBefore(t,s)}(window, document,'script',\n  'https:\/\/connect.facebook.net\/en_US\/fbevents.js');\n  fbq('init', '1137093656460433');\n  fbq('track', 'PageView');\n  },3000);\n<\/script><\/p>\n<blockquote><p><strong><span style=\"color: #ff6600;\">If you liked the article, do not forget to share it with your friends. Follow us on\u00a0<span style=\"color: #ff0000;\"><a style=\"color: #ff0000;\" href=\"https:\/\/news.google.com\/publications\/CAAqBwgKMLG0nwswvr63Aw\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Google News<\/a><\/span>\u00a0too, click on the star and choose us from your favorites.<\/span><\/strong><\/p><\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\">For forums sites go to <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/forum.buradabiliyorum.com\/\" target=\"_blank\" rel=\"noopener\">Forum.BuradaBiliyorum.Com<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\"><strong>If you want to read more like this article, you can visit our <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/en.buradabiliyorum.com\/technology\/\" target=\"_blank\" rel=\"noopener\">Technology category.<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<p><span style=\"color: black;\"><a style=\"color: #ff9900;\" href=\"https:\/\/www.reviewgeek.com\/92714\/hackers-exploit-a-16-year-old-bug-in-some-printers-to-take-over-your-machine\/\" target=\"_blank\" rel=\"noopener\">Source<\/a><\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>&#8220;#Hackers Exploit a 16-Year Old Bug in Some Printers to Take Over Your Machine \u2013 Review Geek&#8221; FabrikaSimf\/Shutterstock.com A bug that\u2019s been hidden for 16 years has just been discovered, allowing hackers who exploit it to gain administrator rights on any systems using the software. The vulnerability was found in software used by old printers&#8230;<\/p>\n","protected":false},"author":1,"featured_media":304028,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/www.reviewgeek.com\/p\/uploads\/2021\/07\/ca06b36d.png","fifu_image_alt":"","footnotes":""},"categories":[18],"tags":[],"class_list":["post-304027","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technology"],"_links":{"self":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/304027","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/comments?post=304027"}],"version-history":[{"count":0,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/304027\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media\/304028"}],"wp:attachment":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media?parent=304027"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/categories?post=304027"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/tags?post=304027"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}