Хакер использовал сотни ИИ-агентов для атак на PaperCut
Reported exploitedPaperCut NGPaperCut MFOur summary
An attacker used hundreds of AI agents to exploit CVE-2026-81578 and CVE-2026-82078 in PaperCut NG and PaperCut MF, compromising at least 440 instances across 395 organizations in 48 countries. The flaws allow authentication bypass and remote code execution, letting the operator steal credentials, extract domain secrets, and obtain Domain Admin access at 12 organizations. Education organizations accounted for the largest share of victims, underscoring the need to apply PaperCut's emergency fixes.
Хакер (xakep.ru) publishes this story on its own site; we link to it rather than reprint it.
Worried this affects your company?
Discuss a security assessment of your internet-facing systems. Scope agreed before testing.