All Topics
All Topics
Technology
Technology
Design
Design
Programming
Programming
Science
Science
News
News
Gaming
Gaming
Entertainment
Entertainment
Business
Business
Finance
Finance
Sports
Sports
Health
Health
Food
Food
Travel
Travel
Art
Art
Music
Music
Books
Books
Education
Education
Politics
Politics
Personal
Personal
No algorithm. No AI slop. No ads. Just RSS. Pro-human. Indie writers. Real journalism. Open web. Chronological. Hand toasted.

Security Researchers Expose Weak Encryption in Canon Enterprise Printers

By

Michelle Rhodes

23h ago· 4 min readenInsight

Summary

During a network security assessment, security researchers discovered that Canon enterprise printers configured with default administrator credentials could be exploited to extract domain credentials. The printers' "encrypted" communication was found to use a weak XOR-based obfuscation scheme rather than true encryption, allowing attackers with administrative access to easily decrypt stored credentials. The article highlights how enterprise printers represent a significant but often overlooked attack surface, and how what vendors label as "encryption" may not provide real security.

Key quotes

· 3 pulled
Enterprise printers are an interesting attack surface because it is common practice to have them configured with domain credentials.
During a recent network security assessment, we were working on an environment that was well-hardened – Patching was current, password policies were strong, and network segmentation was in place.
So, as part of our enumeration of all network assets, we started looking for default credentials and this led us to multiple Canon enterprise printers configured with default administrator credentials.
Snippet from the RSS feed
Discovery During a recent network security assessment, we were working on an environment that was well-hardened – Patching was current, password policies were strong, and network segmentation was in place. So, as part of our enumeration of all network ass

You might also wanna read