5 ms·
I stopped buying HP printers a decade ago when I found tons of HP spyware when doing some system cleaning.
by lsiq 5y ago
I stopped buying HP printers a decade ago when I found tons of HP spyware when doing some system cleaning.
- unixhero 5y agoJust use a Unix based OS like OSX and Linux. No spyware / adware drivers needed. Solved
- squarefoot 5y agoUsing an Open Source OS helps with malware hidden into drivers or the related installed junk, but unfortunately most network printers phone home, officially to download updates, as soon as they detect a network connection, and there's no way to know or control what they'll do with that connection, short of putting them behind a dedicated firewall. We have approached the era in which all networked devices should be considered as potentially harmful and dealt appropriately. From TVs to household appliances, home automation systems etc, everything could be used to grab personal information. Hiding a mic or a micro camera into a printer, or any other device, as of today is cheap and trivial. We should consider an untrusted separated network path for all these devices in the home network, so that they can't access our files and their connection attempts would be actively monitored and controlled.
- Silhouette 5y agoWe have approached the era in which all networked devices should be considered as potentially harmful and dealt appropriately. We're well into that era, but neither the technological protections nor the legal ones have kept up. Tech laws are still barely on the level of requiring manufacturers of network devices not to use the same default password every time and manufacturers of kitchen appliances to accept some basic "right to repair" provisions. These are steps in the right direction of course but they are small steps at the start of a marathon. I think a lot of political leaders fail to appreciate the danger here. This has somehow remained true even as tech crime is rocketing. We are seeing more and more headlines about how some aspect of critical infrastructure has been brought down due to some form of technological attack, businesses have lost money due to data losses, people have had their identities stolen after data breaches, etc. Meanwhile, the tech firms best placed to defend ordinary people and businesses against these kinds of attack are often the ones carrying out the attacks. The fox is guarding the hen house. Just yesterday, there was a news story in the UK[1] about some home car charging stations being vulnerable to simple attacks. These devices get connected to both home networks and electricity grids. The specific models in question were government-approved too. I think typical open-by-default networking is fundamentally broken today. It's like software for non-experts that doesn't have the option to install security updates automatically, or a browser or mobile OS that doesn't sandbox web pages or apps individually. Professionals use many tools to lock down organisational networks, audit and manage connected devices, and deal with modern challenges like bring-your-own-device, and they still get hit from time to time. Meanwhile home users are basically expected to install a new Trojan every time they buy a new device. This is not going to end well. [1] https://www.bbc.co.uk/news/technology-58011014 https://www.bbc.co.uk/news/technology-58011014
- pnutjam 5y agoStatic IP your printers, don't supply a gateway. Problem solved.
- vbezhenar 5y agoConsider using VLAN for your home network. You can put devices into a separate VLAN without Internet access. This is easy to setup and does not require expensive equipment.
- sitkack 5y agoShould use one VLAN per device. I think manufacturers will start using their own mesh networks. If your neighbors have a Vizio TV, your vizio TV will use their connection, same for Samsung, etc. If you have an open guest network, these devices will use it automatically. The Brother printer I have attempts to hit some static IP in Japan for firmware updates, unencrypted http. So while on some OSes, you can use it without installing a drive, on MacOS, your desktop will automatically download the vendor's software indirectly from Apple. That is why installing printers is a separate permission as it updates system level components. The only immediate solution I see to this is to have a protocol level firewall say running on an RPi that firewalls the printer off and intermediates all communication between the devices on the local network and the printer.
- fomine3 5y agoI need affordable latest WLAN AP with VLAN. Most consumer WLAN APs don't support so we need to buy enterprise or some enthusiast gear. It seems that on some Xiaomi models, VLAN can't be configured but its firmware is based on OpenWRT, so it can be enabled by hidden API. So maybe SoC itself supports it but manufacturer disable/don't enable it.
- lsiq 5y agoYeah that was 10 years ago. I'm on Linux now.
- mcv 5y agoI have a Samsung printer, but support for that also switched to HP a number of years ago. I would really like to know if there's a good printer manufacturer that makes simple, high quality printers that just work, don't require all these needless hoops, and respect the customer. Sounds like there should be a market for that, and yet somehow all printer manufacturers seem to suck.
- deleted 5y ago[deleted]
- tpxl 5y agoIsn't brother in that ballpark?
- pnutjam 5y agoYeah, brother is my go to now. Laser b/w for less then $150. I have a color 4040 that I got a great deal on.
- sgtnoodle 5y agoI have a $100 brother laser printer, and it's not too bad. It took me a while to get it working on arch Linux reliably over wifi, but that was more of an arch issue.
- mcv 5y agoWell, my Samsung doesn't work reliably over wifi from Windows and Mac, so this issue is hardly limited to Brother and Arch.
- sgtnoodle 5y agoSpecifically, arch wasn't running any zero-conf services out of the box. CUPS would auto-detect the printer just fine, but then try to connect to it via an mDNS hostname, and the connection would fail. Once I figured that out and got mDNS working, it's been reliable. A lot of wifi problems are due to bad/flaky access point hardware. Notably, a lot of the internet recommended "good" consumer wifi gear actually sucks from a reliability point of view. It took me months to get my home setup reliable enough to take it for granted.