Friday, 15 August 2025
31 C
Singapore
31.2 C
Thailand
27.7 C
Indonesia
27.8 C
Philippines

Hundreds of Brother printers have a serious flaw you can’t entirely fix

Hundreds of Brother printers have a flaw that lets hackers guess your admin password and one critical issue can't be fixed with updates.

If you’re using a Brother printer at home or work, your device could be at risk from a major security flaw that cannot be fixed entirely. Security firm Rapid7 has discovered eight new vulnerabilities affecting 689 different Brother printer models. One of these flaws is especially dangerous, as it allows hackers to work out the printer’s default admin password by simply knowing the device’s serial number.

This flaw has been logged as CVE-2024-51978 in the National Vulnerability Database and has received a 9.8 out of 10 score on the CVSS scale, marking it as “Critical.” If an attacker can get hold of your printer’s serial number, they could generate its default password, gain full access to the device, and then take further action using the other seven vulnerabilities found by Rapid7.

How this vulnerability could affect you

If your printer still uses the default admin password it came with, you’re at the greatest risk. Once inside, an attacker could retrieve sensitive data from your printer, crash it remotely, or connect it to other devices on your network. They could also send their own HTTP requests through your printer or gain access to saved passwords for other connected services.

While most of these problems can be resolved through firmware updates, the most serious flaw, CVE-2024-51978, cannot be fixed this way. Brother has confirmed that this particular issue can only be addressed through changes made during the production of future models. For the models already on the market, Brother recommends users take immediate action by manually changing the admin password via the printer’s Web-Based Management menu.

This is not a problem exclusive to Brother printers. The same report revealed that 59 printer models from other major brands — including Fujifilm, Toshiba, Ricoh, and Konica Minolta — could also be affected. However, not all printers share every vulnerability, and the impact varies between models.

What you should do right now

If you have a Brother printer, the most important step you can take is to check whether your model is one of those affected. Brother’s support page includes full details and a list of impacted devices. You should also ensure your printer’s firmware is current, as updates can patch seven vulnerabilities.

Even more crucial is changing your default password if you haven’t done so already. You can access your printer’s settings through its Web-Based Management feature. Brother is urging users to take this step, as it significantly reduces the risk of remote access. Leaving the default password in place makes it far easier for hackers to break in and control your printer.

This discovery powerfully reminds us of the importance of changing default passwords on all devices—not just printers. Factory-set credentials are often widely known and can be exploited in seconds, whether it’s your router, webcam, or smart home device. Taking a few minutes to update them could protect you from a serious data breach or cyberattack.

While Brother is working on hardware-level fixes for future printers, you can protect your current device today by making these vital changes.

Hot this week

Microsoft launches lightweight Office taskbar apps for Windows 11

Microsoft rolls out new lightweight taskbar apps for Windows 11, providing Microsoft 365 users with quick access to contacts, files, and calendars.

Visa reports Asia Pacific’s shift to app-based remittances in 2025 study

Visa’s 2025 report shows Asia Pacific’s remittances shifting to apps, with security, speed and ease of use driving digital adoption.

Nvidia and AMD to give 15% of China chip revenue to the U.S. to secure export licences

Nvidia and AMD will pay 15% of their China AI-chip revenues to the U.S. for export licences, while Intel’s CEO meets Trump amid China ties scrutiny.

Nvidia’s H20 chip faces growing distrust in China amid alleged backdoors and a revenue deal

Nvidia’s H20 chip is facing mounting distrust in China over alleged backdoors and revenue sharing, despite the company's denials

Most Southeast Asian organisations to adopt AI agents by 2026

Nearly 90% of Southeast Asian organisations will use agentic AI by 2026, with adoption driven by productivity and innovation goals.

Confluent: Enabling AI-first transformation through real-time data

How Confluent is helping enterprises modernise data infrastructure with real-time streaming to scale AI responsibly, improve governance, and accelerate transformation across Southeast Asia.

POCO launches M7 smartphone in Singapore with large battery and enhanced features

POCO launches M7 in Singapore with a 7000mAh battery, large display, upgraded performance and early bird prices from S$179.

Okta report finds automation and AI agents leading workplace transformation

Okta’s AI at Work 2025 report finds automation and AI agents leading workplace change, but governance and security remain challenges.

Docusign unveils AI-powered contract tools at Singapore Momentum event

Docusign launches AI-powered agreement tools at Momentum Singapore to speed up contracts and strengthen compliance in Asia-Pacific.

Related Articles

Popular Categories