The MORSE team has been collaborating with the Windows Print team to modernize the Windows Print System. The new design, called Windows Protected Print Mode (WPP), aims to create a more modern and secure print system that prioritizes user security. Third-party drivers will no longer be supported, as they have been a frequent target for attackers. WPP blocks all third-party drivers and implements new security measures, resulting in a significant decrease in vulnerabilities. Despite potential inconvenience, the shift to driverless printing is believed to be the best option for overall user security. The adoption of Internet Printing Protocol (IPP) in Windows has already brought enhanced security benefits, and the transition to WPP will further improve print security. Certain legacy configurations and vulnerabilities will be addressed, and additional security measures, such as limited print configuration and binary mitigations, will be implemented. WPP is currently in development, and user feedback is encouraged to enhance its features and security.
https://techcommunity.microsoft.com/t5/security-compliance-and-identity/a-new-modern-and-secure-print-experience-from-windows/ba-p/4002645