logo

When Encryption Isn’t Really Encryption

ID: a6fa00fb-3be5-5ab8-9a8f-6856d5065c80

STIX ID: report--a6fa00fb-3be5-5ab8-9a8f-6856d5065c80

Feed Name: Security Boulevard

Threat Score
80/100

Date Published: 2026-05-28

Date Updated: 2026-05-29

Author: Michelle Rhodes

...
...

This report details a Canon printer configuration-export vulnerability in which client-side-only encryption controls can be bypassed to obtain plaintext device configurations and stored credentials. Praetorian demonstrated credential extraction that enabled lateral movement and domain compromise; Canon confirmed the issue, reserved CVE-2026-1789, and published an advisory indicating the problem affects over 200 models.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.