logo

PaperCut warns of NG, MF flaw exploited in zero-day attacks

ID: 24502583-80ac-5c82-b09f-a8cecb244616

STIX ID: report--24502583-80ac-5c82-b09f-a8cecb244616

Feed Name: Bleeping Computer

Threat Score
80/100

Date Published: 2026-08-27

Date Updated: 2026-08-27

Author: Lawrence Abrams

...
...

PaperCut has warned that a zero-day vulnerability in all versions of PaperCut NG and MF is being actively exploited in the wild, with confirmed customer incidents; the company released emergency patches and is urging organizations with internet-exposed servers to restrict access to trusted IPs. The advisory provides indicators of compromise (e.g., suspicious pc-app.exe activity and modified/missing server.log entries) and mitigation steps, but details of the flaw, attacker identity, and post-compromise activity remain undisclosed; the report also notes prior PaperCut flaws were exploited by ransomware groups such as Clop.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.