Skip to main content

The PrintNightmare security flaw: did you update?

Last month, Microsoft issued a fix for a bug called PrintNightmare. This bug allowed hackers to access your computer through your printer, and cause all kinds of havoc once they were in there. We’ve taken a look at PrintNightmare, and why it’s important to update your PC.

What is PrintNightmare?

PrintNightmare is a bug in Windows machines, discovered by a cybersecurity organisation. The company, Sangfor, posted on Twitter in May that they had discovered some bugs in the Print Spooler in Windows machines.

The Print Spooler is the software in Windows machines which manages all of the printing that’s sent to a printer from the PC, or a number of PCs. If you’ve ever clicked the printer to see where your print job is in the queue, you’ll have seen this before; the Print Spooler is the program that makes sure all of your print jobs get sent to the printer.

If you’re using a printer that connects to the internet (and unless your printer plugs into your PC, then you probably are), hackers could exploit this bug remotely, meaning they could find the printer and access your computer regardless of where they are in the world.

Although accessing your computer through your printer might sound limiting, there was actually a huge amount of damage that this bug could do. Hackers were able to install software on a machine (and yes, that includes malware), view or delete data on PCs (such as photos, documents and files) and create new users with admin privileges (essentially allowing them to access whatever they want, whenever they want). 

What happened with PrintNightmare?

The reason that PrintNightmare became such a nightmare for Windows is due to the fact that Sangfor accidentally published a proof-of-concept online for the bug. This was essentially a guide to the bug, and how it could be exploited, which made PrintNightmare a dream come true for hackers.

The post was deleted soon after, however it had already been copied and uploaded to multiple websites in that time, making this a huge security risk for Windows users.

Due to the potential damage that this bug could do, PrintNightmare was a serious concern for Windows. As such, they pushed a series of updates, even going so far to update versions of Windows that are so old they no longer offer support for them.

If you’re running Windows 10 or Windows 7, Windows Server 2016 and Windows Server 2012, your PC is vulnerable to PrintNightmare.

Why you should update your PC

PrintNightmare is a great example of how important it is to update your PC. If you’ve got automatic updates turned on, you should have already received the patch for PrintNightmare. 

If you’re not sure whether you’ve received the update, head to your Windows Update settings. There, you should be able to check for updates and ensure that you’re up to date.

Updating your PC is incredibly important, because bugs like PrintNightmare are being discovered all the time. Automatic updates can be annoying, but they protect your PC from attacks and ensure that any security vulnerabilities are patched as soon as possible. Turn them on, and keep your machine safe. 

Tweet us @TranscenditUK


The Transcendit Way

Transcendit understand that when you choose to work with us, whether we're taking care of your IT, app or web development, you're trusting us with part of your business. So whether we're looking after your computers, phone systems or servers we always do things 'the Transcendit way'.

The whole of our team adhere to the same values, beliefs and policies - the principles that were written when Transcendit first formed in 2000. Whether you come to us for cloud services or recovery backup you can be confident that you'll always receive the same excellent service.

The Transcendit way outlines how we do business; following the same straightforward principles with every client and customer, regardless of how big or small they may be.

That means we get to know you and your business. We offer you a friendly, professional and efficient service, and we'll always be honest with you.
We understand that not everybody speaks fluent IT, so we try to explain things in a way that is simple and clear. We always spend as much time as is necessary explaining things to you.
If you need to talk to us about something, no matter how insignificant, we are only ever a phone call away – and we’re never too busy to make you a cup of tea and have a sit down with you in person.
We understand how frustrating it can be when things are late. When we schedule an appointment with you, we are there when you’re expecting us. If something prevents us from getting there, we always call you in advance to let you know.
Sometimes things can go wrong, but we never lie to you or try to cover something up. If things go askew we tell you what’s happened and how we plan to prevent it affecting your business.
We want you to continuously benefit from working with us. We regularly discuss your business and make suggestions for improving systems and processes wherever we can – but we never try to push you into a purchase.
When we quote a fixed price, that's always the amount we charge – you won’t find any nasty surprises on a bill from us. If you are paying by time and materials, we inform you if our approximations could change.
We understand the importance of privacy for your business and your customers. We respect the confidentiality of your data, and we will never pass on your information to third parties.
We appreciate it when you take the time to give us feedback. A system called CustomerSure records our client's responses, so you can trust that our reviews are from real people.
Find out what they're saying here.
Who can do without Chris in their lives, I certainly couldn't! Well done again. Eileen, Framehouse

Based on 11207 reviews our customers rate us 9.8/10. Reviews and ratings by Customersure. 17-January-2024

Transcendit are proud sponsors of CHUF, the Children's Heart Unit Fund.

Transcendit is a Living Wage employer
Transcendit is a Microsoft Gold certified partner
VMWARE partner
Vipre partner
IPCortex partner
WithSecure partner
DELL partner
Barracuda partner
Veeam partner
N-Able partner