Over 45,000 Printers Exposed Online via Unprotected Raw Print and IPP Ports
A ZoomEye scan conducted on 22 September 2026 found 44,897 devices with port 9100 (raw print) and 314 with port 631 (IPP) openly accessible on the internet. Port 9100, historically linked to HP JetDirect, requires no authentication or encryption and is enabled by default on most network printers, making it difficult to disable without reconfiguring every connected client. The modern IPP protocol on port 631 appeared far less frequently, likely because it is often restricted to local networks and may require authentication. Beyond printing, exposed devices can leak stored documents, address books, scan-to-email credentials, and firmware update access — effectively making them full attack surfaces. Security researchers recommend auditing internal network ranges for all three ports — 9100, 631, and 161 — and treating any open result as a vulnerability requiring immediate attention.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.


Discussion (0)
Log in to join the discussion and vote.
Log in