---
title: Windows PrintNightmare vulnerability
description: Windows PrintNightmare response from Aabyss to protect our clients from this vulnerability
image: https://www.aabyss.uk/hubfs/Gray%20Button%20Print%20on%20Modern%20Computer%20Keyboard..jpeg
---

[![Aabyss Logo](https://www.aabyss.uk/hs-fs/hubfs/Untitled%20design-1.png?width=218&height=61&name=Untitled%20design-1.png "Aabyss Logo")](https://www.aabyss.uk/)

### 0151 733 3223

- [**](https://www.facebook.com/aabysstech/)
- [**](https://twitter.com/aabysstech)
- [**](https://www.linkedin.com/company/aabysstech/)
- [**](mailto:hello@aabyss.uk)

![Aabyss Blog Heading Background](https://www.aabyss.uk/hubfs/48.jpg "Aabyss Blog Heading Background")

## News & Opinion

#### Gain the edge on the world of business technology and cyber security

# Windows PrintNightmare vulnerability

Posted by [Troy Midwood](https://www.aabyss.uk/news/author/troy-midwood) | 05-Jul-2021 14:27:48

- [Tweet](https://twitter.com/share)

![](https://www.aabyss.uk/hubfs/Gray%20Button%20Print%20on%20Modern%20Computer%20Keyboard..jpeg)

Recently, a vulnerability was discovered in Windows' “Print Spooler” function, which has been categorised as a critical security vulnerability.

The vulnerability, when successfully exploited, works by tricking the affected computer into copying a malicious library (DLL) file into its print system. This DLL file is then executed, compromising the system and giving the attacker full administrative privileges across the machine; in the case of a Windows Domain Controller, this means full access to everything across the network.  That's bad.

Microsoft are working on a patch, but their current advice is to disable the Print Spooler, which is great if you've reached the nirvana of the paperless office, but a bit of a problem for everyone else.

Although the biggest risk is on servers, and specifically domain controller servers, this vulnerability exists in all versions of Windows.

You can find more information on the issue and Microsoft’s current guidance here

[**https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-34527**](https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-34527)

**Response from Aabyss for our clients**

We have already taken action to mitigate the risk posed by this vulnerability - we have disabled the access permission to the specific folder in Windows that the Print Spooler uses to store drivers.

Doing this, rather the disabling the Print Spooler, means that users can continue to print, but updating print drivers and installing new printers will be more complex.  We are hoping that Microsoft will release a patch very soon, which will mean we can reverse our mitigation.

- We began taking action on this last week, and every server we support has had the mitigation applied already
- We are continuing to script the mitigation, so that desktop and laptop computers which might have been turned off are also protected
- There is no action you need to take to mitigate this risk - even if we co-manage your IT environment
- There is a small risk of print issues - please bear with us if we need to help you with printing problems
- Changing printer settings, adding new printers and updating printer drivers may fail because of the mitigations we have put in place - please contact our Support Desk if you need help

**If you don't work with us already**

Hopefully this information is useful to you.  If you work with an MSP, check with them if they have taken steps to mitigate.  If you don't, but you have the function to run scripts, we based our response on this guidance, and you should be able to use it to mitigate in the way we have for our clients.

[https://blog.truesec.com/2021/06/30/fix-for-printnightmare-cve-2021-1675-exploit-to-keep-your-print-servers-running-while-a-patch-is-not-available/](https://blog.truesec.com/2021/06/30/fix-for-printnightmare-cve-2021-1675-exploit-to-keep-your-print-servers-running-while-a-patch-is-not-available/)

If you don't have a function to run scripts, your best course of action is to disable the Print Spooler function on all of your servers, starting with your domain controllers

#### Written by [Troy Midwood](https://www.aabyss.uk/news/author/troy-midwood)

[LinkedIn](https://www.linkedin.com/in/troymidwood/) [Twitter](https://twitter.com/troymidwood)

## Leave a Comment

### Recent Posts

### Topics

- [Aabyss News (45)](https://www.aabyss.uk/news/topic/aabyss-news)
- [AI (3)](https://www.aabyss.uk/news/topic/ai)
- [Artificial Intelligence (3)](https://www.aabyss.uk/news/topic/artificial-intelligence)
- [Attack (12)](https://www.aabyss.uk/news/topic/attack)
- [Backup (4)](https://www.aabyss.uk/news/topic/backup)
- [BYOD (1)](https://www.aabyss.uk/news/topic/byod)
- [Cloud (12)](https://www.aabyss.uk/news/topic/cloud)
- [Connectivity (7)](https://www.aabyss.uk/news/topic/connectivity)
- [Customer (2)](https://www.aabyss.uk/news/topic/customer)
- [Cyber (18)](https://www.aabyss.uk/news/topic/cyber)
- [Cyber Insurance (2)](https://www.aabyss.uk/news/topic/cyber-insurance)
- [Cybersecurity (53)](https://www.aabyss.uk/news/topic/cybersecurity)
- [Data Management (5)](https://www.aabyss.uk/news/topic/data-management)
- [Disaster Recovery (6)](https://www.aabyss.uk/news/topic/disaster-recovery)
- [Emerging (3)](https://www.aabyss.uk/news/topic/emerging)
- [Hospitality (2)](https://www.aabyss.uk/news/topic/hospitality)
- [Insider (2)](https://www.aabyss.uk/news/topic/insider)
- [IT News (36)](https://www.aabyss.uk/news/topic/it-news)
- [IT Support (24)](https://www.aabyss.uk/news/topic/it-support)
- [Managed Service (35)](https://www.aabyss.uk/news/topic/managed-service)
- [Management (13)](https://www.aabyss.uk/news/topic/management)
- [Outsourced IT (2)](https://www.aabyss.uk/news/topic/outsourced-it)
- [Password (7)](https://www.aabyss.uk/news/topic/password)
- [Productivity (36)](https://www.aabyss.uk/news/topic/productivity)
- [Ransomware (4)](https://www.aabyss.uk/news/topic/ransomware)
- [Security (51)](https://www.aabyss.uk/news/topic/security)
- [Social Media Threats (2)](https://www.aabyss.uk/news/topic/social-media-threats)
- [Strategy (24)](https://www.aabyss.uk/news/topic/strategy)
- [Technologies (6)](https://www.aabyss.uk/news/topic/technologies)
- [Technology (29)](https://www.aabyss.uk/news/topic/technology)
- [Technology Budgeting (1)](https://www.aabyss.uk/news/topic/technology-budgeting)
- [Tips & Tricks (16)](https://www.aabyss.uk/news/topic/tips-tricks)
- [WiFi (1)](https://www.aabyss.uk/news/topic/wifi)
- [Work-from-home (1)](https://www.aabyss.uk/news/topic/work-from-home)

[see all](https://www.aabyss.uk/news/windows-printnightmare-vulnerability#)

#### ABOUT AABYSS

We are commercially focused technology strategists who help clients outperform their competitors through proven leadership, management and support.

We make informed IT decisions to simplify your technology needs and support your growing business.

### Subscribe for Cyber Security Updates

#### LIVERPOOL OFFICE

19 Meridian Business Village  
Hansby Drive  
Liverpool  
L24 9LG

[///cocktail.audible.bulbs](https://what3words.com/cocktail.audible.bulbs)

T: 0151 733 3223  
E: [hello@aabyss.uk](mailto:hello@aabyss.uk?subject=Website%20Enquiry)

#### SHEFFIELD OFFICE

3 Newton Business Centre  
Thorncliffe Park Estate   
Newton Chambers Road  
Sheffield

S35 2PH

[///countries.winded.winter](https://what3words.com/countries.winded.winter)

T: 0114 361 0062  
E: [hello@aabyss.uk](mailto:hello@aabyss.uk?subject=Website%20Enquiry)

 

#### COMPANY POLICY

[Service Level Standards](https://www.aabyss.uk/service-level)   
[Cookie Policy](https://www.aabyss.uk/cookie-policy)   
[Privacy Policy](https://www.aabyss.uk/privacy-policy)   
[Complaints](https://www.aabyss.uk/complaints-policy)   
[Modern Slavery](https://www.aabyss.uk/hubfs/Downloads/Modern%20Slavery%20Statement.pdf)   
[Report Abuse](https://www.aabyss.uk/abuse)

Company Registered in England & Wales, Company No. 04726959

- [**](https://www.facebook.com/aabysstech/)
- [**](https://twitter.com/aabysstech)
- [**](https://www.linkedin.com/company/aabysstech/)

©2025 Aabyss Ltd.

**

```json
{
  "@context" : "https://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "Troy Midwood",
    "url" : "https://www.aabyss.uk/news/author/troy-midwood"
  },
  "dateModified" : "2021-07-09T13:55:54.213Z",
  "datePublished" : "2021-07-05T13:27:48.000Z",
  "headline" : "Windows PrintNightmare vulnerability",
  "image" : [ "https://www.aabyss.uk/hubfs/Gray%20Button%20Print%20on%20Modern%20Computer%20Keyboard..jpeg" ],
  "mainEntityOfPage" : {
    "@id" : "https://www.aabyss.uk/news/windows-printnightmare-vulnerability",
    "@type" : "WebPage"
  },
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject",
      "url" : "https://www.aabyss.uk/hubfs/Untitled%20design-1.png"
    },
    "name" : "Aabyss Ltd"
  }
}
```