Close Menu
Innovation Village | Technology, Product Reviews, Business
    Facebook X (Twitter) Instagram
    Thursday, June 5
    • About us
      • Authors
    • Contact us
    • Privacy policy
    • Terms of use
    • Advertise
    • Newsletter
    • Post a Job
    • Partners
    Facebook X (Twitter) LinkedIn YouTube WhatsApp
    Innovation Village | Technology, Product Reviews, Business
    • Home
    • Innovation
      • Products
      • Technology
      • Internet of Things
    • Business
      • Agritech
      • Fintech
      • Healthtech
      • Investments
        • Cryptocurrency
      • People
      • Startups
      • Women In Tech
    • Media
      • Entertainment
      • Gaming
    • Reviews
      • Gadgets
      • Apps
      • How To
    • Giveaways
    • Jobs
    Innovation Village | Technology, Product Reviews, Business
    You are at:Home»Cybersecurity»Microsoft Advises Customers to Disable Windows Print Spooler or You Could be Hacked

    Microsoft Advises Customers to Disable Windows Print Spooler or You Could be Hacked

    2
    By Tapiwa Matthew Mutisi on July 19, 2021 Cybersecurity, Microsoft, Software, Technology, Windows

    Microsoft is once again advising its customers to disable Windows print spooler, after a new vulnerability that allows hackers to execute malicious code on machines has emerged. While a patch fixing the flaw will be released in due course, the most effective workaround currently on the table is to stop and disable the print spooler service entirely.

    The vulnerability is the third printer-related flaw in Windows to come to light in the past five weeks. A patch Microsoft released in June for a remote code execution flaw failed to fix a similar but distinct flaw dubbed PrintNightmare, which also made it possible for attackers to run malicious code on fully patched machines. Microsoft released an unscheduled patch for PrintNightmare, but the fix failed to prevent exploits on machines using certain configurations.

    Microsoft’s Latest Security Flaw ‘PrintNightmare’ Could Have Major Repercussions

    The vulnerability was discovered by Jacob Baines, a vulnerability researcher at security firm Dragos, who is scheduled to deliver a talk titled “Bring Your Own Print Driver Vulnerability“ at next month’s Defcon hacker convention The executive summary for the presentation is:

    What can you do, as an attacker, when you find yourself as a low privileged Windows user with no path to SYSTEM? Install a vulnerable print driver! In this talk, you’ll learn how to introduce vulnerable print drivers to a fully patched system. Then, using three examples, you’ll learn how to use the vulnerable drivers to escalate to SYSTEM.

    Baines, who said he performed the research outside of his responsibilities at Dragos, described the severity of the vulnerability as “medium.”

    Microsoft Issues Urgent Windows Security Warning: Update Your PC Immediately

    The emergence of this new vulnerability is frustrating news for Microsoft and its users.

    Microsoft has warned customers of the new print spooler vulnerability online, writing: “An elevation of privilege vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.”

    This is very important!

    If you have the "Print Spooler" service enabled (which is the default), any remote authenticated user can execute code as SYSTEM on the domain controller.

    Stop and Disable the service on any DC now! https://t.co/hl0NItsrBF pic.twitter.com/s4yE2VVl5I

    — Will Dormann (@wdormann) June 30, 2021

    The bottom line in terms of making your computer safe is to stop and disable the print spooler service outright if it’s running – Microsoft spells out how you can do so online. While there’ll be a patch for this vulnerability released in due course, no timeline is currently available.

    Related

    Cyber Security cybercrime CYbersecurity Microsoft Printing PrintNightmare Security Windows Print Spooler
    Share. Facebook Twitter Pinterest LinkedIn Email
    Tapiwa Matthew Mutisi
    • Facebook
    • X (Twitter)
    • LinkedIn

    Tapiwa Matthew Mutisi has been covering blockchain technology, intelligent technologies, cryptocurrency, cybersecurity, telecommunications technology, sustainability, autonomous vehicles, and other topics for Innovation Village since 2017. In the years since, he has published over 4,000 articles — a mix of breaking news, reviews, helpful how-tos, industry analysis, and more. | Open DM on Twitter @TapiwaMutisi

    Related Posts

    Why Nigerian Fintechs Are Suddenly Eyeing East Africa

    Top 10 Lucrative Tech Skills That Don’t Require Coding

    Microsoft Rolls Out Bold New Notepad Update

    2 Comments

    1. Pingback: Zoom Acquires Cloud Call Center Firm Five9 for $14.7B | Innovation Village | Technology, Product Reviews, Business

    2. Pingback: Microsoft Begins Rolling out Windows 11 Update With Teams Chat Built-in | Innovation Village | Technology, Product Reviews, Business

    Leave A Reply Cancel Reply

    You must be logged in to post a comment.

    Copyright ©, 2013-2024 Innovation-Village.com. All Rights Reserved

    Type above and press Enter to search. Press Esc to cancel.