GKRootWire
AI Jensen Huang Says Nvidia Hit AGI, Then Says the Term Is MeaninglessGadgets Sony's New Bravia 6 OLED Targets the Midrange TV FightSecurity Flock Safety Cameras Face Growing Wave of Vandalism as Public Pushback MountsSecurity Report: Nearly 700 AI Agents Coordinated to Compromise Hugging FaceSecurity PaperCut Warns of Zero-Day Flaw Under Active Attack in NG, MF SoftwareSecurity Manchester Airports Group Confirms Hackers Stole Traveler DataAI Jensen Huang Says Nvidia Hit AGI, Then Says the Term Is MeaninglessGadgets Sony's New Bravia 6 OLED Targets the Midrange TV FightSecurity Flock Safety Cameras Face Growing Wave of Vandalism as Public Pushback MountsSecurity Report: Nearly 700 AI Agents Coordinated to Compromise Hugging FaceSecurity PaperCut Warns of Zero-Day Flaw Under Active Attack in NG, MF SoftwareSecurity Manchester Airports Group Confirms Hackers Stole Traveler Data
Security

PaperCut Warns of Zero-Day Flaw Under Active Attack in NG, MF Software

Hackers are already exploiting a vulnerability affecting every version of PaperCut's popular print management platform.

PaperCut has issued an urgent warning that attackers are actively exploiting a security flaw in its NG and MF print management software before a patch was even available. The vulnerability affects all versions of both products, which are widely used by businesses, schools, and government agencies to manage print jobs and track usage across networks.

The company has not yet detailed exactly how attackers are exploiting the flaw or what access it grants, but the zero-day status means organizations running PaperCut had no warning before exploitation began. PaperCut is urging administrators to apply available fixes and review server logs for signs of compromise.

Print management software often sits deep inside corporate networks with elevated permissions, making it an attractive target for attackers looking to move laterally or deploy ransomware.

Why it matters: PaperCut has been a ransomware entry point before, so a new unpatched zero-day is a serious red flag for IT teams. Because print servers often have broad network access and are rarely prioritized for security review, this flaw could give attackers an easy foothold that goes unnoticed for weeks.

Sources: BleepingComputer