# Printer Security

Published articles for Printer Security.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Canon Printer Configuration Exports Can Expose Stored Credentials Through Client-Side Encryption Checks

DevFeed: [Canon Printer Configuration Exports Can Expose Stored Credentials Through Client-Side Encryption Checks](<https://devfeed.tech/articles/when-encryption-isn-t-really-encryption-51387.md>)

Original publisher: [Read original article](<https://www.praetorian.com/blog/canon-printer-credential-leak/>)

Author: Michelle Rhodes

Published: 2026-05-28T21:27:41Z

Content type: article

Language: en

Sources: [Praetorian](<https://devfeed.tech/sources/praetorian.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [Printer](<https://devfeed.tech/topics/printer.md>), [network security](<https://devfeed.tech/topics/network-security.md>), [Network Segmentation](<https://devfeed.tech/topics/network-segmentation.md>), [passwords](<https://devfeed.tech/topics/passwords.md>), [Encryption](<https://devfeed.tech/topics/encryption.md>), [HTTP](<https://devfeed.tech/topics/http.md>), [Reverse Engineering](<https://devfeed.tech/topics/reverse-engineering.md>), [configuration](<https://devfeed.tech/topics/configuration.md>)

Tags: [cve](<https://devfeed.tech/tags/cve.md>), [cve-2026-1789](<https://devfeed.tech/tags/cve-2026-1789.md>), [encrypted](<https://devfeed.tech/tags/encrypted.md>), [enterprise-security](<https://devfeed.tech/tags/enterprise-security.md>), [http](<https://devfeed.tech/tags/http.md>), [iot-security](<https://devfeed.tech/tags/iot-security.md>), [network-security](<https://devfeed.tech/tags/network-security.md>), [network-segmentation](<https://devfeed.tech/tags/network-segmentation.md>), [offensive-security](<https://devfeed.tech/tags/offensive-security.md>), [password](<https://devfeed.tech/tags/password.md>), [printer](<https://devfeed.tech/tags/printer.md>), [printer-security](<https://devfeed.tech/tags/printer-security.md>), [reverse-engineering](<https://devfeed.tech/tags/reverse-engineering.md>), [security](<https://devfeed.tech/tags/security.md>), [sensitive-data](<https://devfeed.tech/tags/sensitive-data.md>), [uncategorized](<https://devfeed.tech/tags/uncategorized.md>), [vulnerability](<https://devfeed.tech/tags/vulnerability.md>), [vulnerability-research](<https://devfeed.tech/tags/vulnerability-research.md>)

### AI overview

A security assessment found that certain Canon enterprise printers accepted a modified HTTP parameter that disabled encryption enforcement for configuration exports. An attacker with administrative access could retrieve plaintext configuration files containing stored credentials.

### Source excerpt

Discovery During a recent network security assessment, we were working on an environment that was well-hardened - Patching was current, password policies were strong, and network segmentation was in place. So, as part of our enumeration of all network assets, we started looking for default credentials and this led us to multiple Canon enterprise printers [...] The post When Encryption Isn't Really Encryption appeared first on Praetorian.