Paul’s Printer Hacking Adventures – Paul’s Security Weekly #525

Printer attacks have been around for some time. Paul describes some of the latest techniques and research into printer hacking, including capturing print jobs, manipulating print jobs and other attacks. These are useful on penetration tests (believe it or not). Defenders take note, printers must be on your radar. Run PJL Commands: printer:/> site @PJL […]

The post Paul’s Printer Hacking Adventures – Paul’s Security Weekly #525 appeared first on Security Weekly.

Continue reading Paul’s Printer Hacking Adventures – Paul’s Security Weekly #525

FBI Arrests NSA Contractor for Leaking Secrets – Here’s How they Caught Her

The FBI arrested a 25-year-old NSA contractor on Saturday (3rd June) for leaking classified information to an online news outlet which published its report yesterday (5th June) — meaning the arrest was made two days before the actual disclosure went online.

Reality Leigh Winner, who held a top-secret security clearance and worked as a government contractor in Georgia with Pluribus

Continue reading FBI Arrests NSA Contractor for Leaking Secrets – Here’s How they Caught Her

Microsoft splats bug that turns printers into drive-by exploit kits

In this month’s Patch Tuesday, Microsoft has released 11 sets of patches – 6 “critical” and 5 “important.” The good news is that none of the plugged vulnerabilities are being currently exploited in the wild. The “critical” patches are for Internet Explorer, Edge, Script and VBScript, Office, Print Spooler, and Adobe Flash Player, and fix vulnerabilities that could lead to remote code execution. Two of the “important” patches plug holes that could allow attackers to … More Continue reading Microsoft splats bug that turns printers into drive-by exploit kits

Printers all over the US “hacked” to spew anti-Semitic fliers

Andrew “Weev” Auernheimer, one of the two men who were prosecuted and convicted for harvesting e-mails and authentication IDs of 114,000 early-adopters of Apple’s iPad from AT&T’s servers, is back to his old tricks: using publicly accessible assets for furthering his own goals. As described in an extensive blog post, he discovered a great number of printers accessible (without authentication) through port 9100 open to the Internet, and fed them a simple Bash script that … More Continue reading Printers all over the US “hacked” to spew anti-Semitic fliers