ZeroHour
CyberScooppublished ()ingested @timstarks1

Critical 'PrintNightmare' bug in Microsoft's Windows tech is still causing headaches

criticalRansomware exploited in the wildimportance 60
Full article694 words · extracted from cyberscoop.com · click to collapse
Skip to main content

Get our latest cybersecurity news first on Google.

Click here!

The PrintNightmare bug could allow hackers to take over computers remotely.

The Microsoft store is seen on April 30, 2020 in New York City. (Photo by Eduardo MunozAlvarez/VIEWpress via Getty Images)

More than a week later, Microsoft is still trying to shake off its PrintNightmare.

That’s the nickname for a bug for which a proof-of-concept exploit accidentally published online on June 30. Microsoft on Tuesday issued an emergency update for the critical flaw, which affects all versions of Windows’ Print Spooler that manages interactions between computers and printers. The vulnerability could allow hackers to take over computers remotely.

But on Thursday Microsoft had to fend off claims from researchers that its patch didn’t work.

“Our investigation has shown that the … security update is working as designed and is effective against the known printer spooling exploits and other public reports collectively being referred to as PrintNightmare,” the company wrote. “All reports we have investigated have relied on the changing of default registry setting related to Point and Print to an insecure configuration.”

Previously, the patch had encountered other problems, such as breaking connections to some brands of printers. Microsoft acknowledged that issue, and recommended rolling back the patch to fix it.

Microsoft also faced criticism for initially labeling a similar vulnerability as low-risk in an earlier update.

The bug was bad enough to warrant an alert from the Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency. It also prompted Microsoft to issue a security update for Windows 7, which the company ended support for back in January of 2020.

The vulnerability first sprung into view when Chinese researchers at Sangfor accidentally released the proof-of-concept code in advance of a planned talk at of the Black Hat conference in Las Vegas that kicks off this month.

It’s not the first time Print Spooler has dealt with wide-spanning vulnerabilities. Last summer, researchers discovered a denial of service vulnerability that affected versions of Windows as old as Windows 2000.

More Scoops

A data center in Vernon, Calif. They are groups calling for AI, and the technology it sits on, to be designated as critical infrastructure. (Getty Images)

The push to designate AI as the next critical infrastructure sector

The designation would unlock a range of federal services, tools and resources for an industry that policymakers view as increasingly tied to national and economic security.

A view of Medusa sculpture at Temple of Apollo ruins which stands as one of the best-preserved ancient temples of the classical era, as it draws attention with its magnificent architecture and mythological significance in Didim district of Aydin, Turkiye on October 15, 2025. (Photo by Sidar Can Eren/Anadolu via Getty Images)

Medusa ransomware tallies hundreds of new victims, says updated advisory on group’s tactics

Sen. Ron Wyden, D-Ore., leaves a Senate Democratic meeting at the U.S. Capitol Building on Oct. 3, 2025. (Photo by Kevin Dietsch/Getty Images)

Sen. Wyden urges feds to discard older, insecure, public-facing VPNs

Latest Podcasts

Text extracted automatically; images, tables and formatting may be missing. Original: https://cyberscoop.com/printnightmare-print-spooler-microsoft-patch/