The risks posed by unsecured printers and multifunction devices (MFDs)
The connected printer can bring numerous benefits to an organisation, including increased productivity, streamlined workflows and reduced costs. But if left unconfigured and unsecured, such as when devices are dispersed across multiple locations, printers and MFDs can expose the business to unnecessary security risks.
The possible risks and vulnerabilities include:
- Confidential information being left in printer trays
- Unauthorised access to printer and administration settings
- Hackers using your printer as a backdoor to your network
- Hackers accessing sensitive data that has been sent via unsecured printers
3 ways to protect your business from a document security breach
Printers and MFDs handle a lot of company information daily – so how do we make sure that all the data (both paper and digital) is protected
Here are some tips on how to improve your document security.
Before changing systems or policies, it can be useful to identify common document security mistakes to avoid. Businesses planning a broader security refresh can also review how document security is evolving as workforces, devices and data become more distributed.
1. Update and configure printers and MFDS
Your first step should be to assess the security of all your printers and MFDs – and that should start with updating any default passwords.
Ameer Karim, VP and GM of Consumer IoT Security at Symantec, said that printer default passwords are often never changed. This creates a weak link that hackers can exploit to penetrate the system. Cybercriminals can see the information printed and use the access point to hack the wider network and uncover more sensitive information, including financial data (CeBIT 2018, ‘IoT Security for the Real World’).
Also, take the time to configure and update your machines and devices with the latest software and technologies. Speak to your printer provider about activating built-in security features and measures for every device. For instance, KYOCERA offers three levels of configuration: basic or standard, medium-level and high-level security.