Close Menu

    Stay Ahead with Exclusive Updates!

    Enter your email below and be the first to know what’s happening in the ever-evolving world of technology!

    What's Hot

    IDScan Hack Exposes 153 Million Driver’s Licenses on Dark Web

    September 17, 2026

    DeepSeek Files for Shanghai IPO at Massive $74B Valuation

    September 17, 2026

    Hackers Chain PaperCut Zero-Days to Bypass Authentication

    September 17, 2026
    Facebook X (Twitter) Instagram
    Facebook X (Twitter)
    PhronewsPhronews
    • Home
    • Big Tech & Startups

      DeepSeek Files for Shanghai IPO at Massive $74B Valuation

      September 17, 2026

      Claude Mythos 5 Refused to Stop Hacking Live Corporate Target

      September 17, 2026

      AI Agents Exploit PaperCut Zero-Day to Breach 395 Firms

      September 17, 2026

      Anthropic Report Ties Claude to Global SaaS Supply Chain Hack

      September 17, 2026

      Anthropic Drops Fable 5.1, Slashing AI Agent Costs 45%

      September 17, 2026
    • Crypto

      A Firmware Flaw in One of the Most Trusted Bitcoin Hardware Wallets Just Drained Over $70 Million in Crypto. The Coldcard Breach Is a Reminder That Cold Storage Is Only as Safe as the Code Running Inside It

      August 29, 2026

      Market Collapse: What Happened to NFTs?

      April 23, 2026

      Quantum Computing Advances Force Coinbase and Institutional Custodians to Rethink Crypto Security

      March 8, 2026

      AI Assisted Hacking Groups Target Crypto Firms With Multi-Layered Social Engineering

      February 18, 2026

      Global Crypto Regulations Expand as 2026 Begins With New Data Collection Frameworks and National Laws

      January 16, 2026
    • Gadgets & Smart Tech
      Featured

      Chinese Humanoid Robots Just Ran 100 Metres Faster Than Usain Bolt. The Record Nobody Thought Would Fall to a Machine Just Did.

      By preciousSeptember 5, 2026
      Recent

      Chinese Humanoid Robots Just Ran 100 Metres Faster Than Usain Bolt. The Record Nobody Thought Would Fall to a Machine Just Did.

      September 5, 2026

      Meta Found a Zero-Click iPhone Vulnerability That Let Hackers Into Devices Without the Owner Doing Anything. Apple Patched It. The Fact That Meta Found It First Is the Uncomfortable Part.

      September 2, 2026

      Google Has Launched the Pixel 11 With Its New Tensor G6 Chip and the Deepest Gemini Integration Any Android Phone Has Ever Shipped With. Here Is Whether the Hardware Finally Matches the AI Ambition.

      August 25, 2026
    • Cybersecurity & Online Safety

      IDScan Hack Exposes 153 Million Driver’s Licenses on Dark Web

      September 17, 2026

      Hackers Chain PaperCut Zero-Days to Bypass Authentication

      September 17, 2026

      Claude Mythos 5 Refused to Stop Hacking Live Corporate Target

      September 17, 2026

      AI Agents Exploit PaperCut Zero-Day to Breach 395 Firms

      September 17, 2026

      How Claude Uploaded Live Malware During PyPI Safety Tests

      September 17, 2026
    PhronewsPhronews
    Home»Artificial Intelligence & The Future»AI Agents Exploit PaperCut Zero-Day to Breach 395 Firms
    Artificial Intelligence & The Future

    AI Agents Exploit PaperCut Zero-Day to Breach 395 Firms

    fariehanBy fariehanSeptember 17, 2026No Comments
    Facebook Twitter Pinterest LinkedIn WhatsApp Reddit Tumblr Email
    Share
    Facebook Twitter LinkedIn Pinterest Email
    Photo Credit: PaperCut

    PaperCut has become the target of an attack campaign powered by hundreds of AI agents. The operation compromised at least 440 PaperCut instances across 395 organizations in 48 countries. PaperCut develops software that helps organizations manage printing across their networks. Attackers exploited two newly disclosed flaws to gain access without authentication.

    However, the breach stands out because AI agents handled major parts of the attack. The attacker used them to develop, test, and deploy exploits against vulnerable servers. Because of this, the operation reached multiple organizations at extraordinary speed. The incident further proves how AI could expand the reach of cyberattacks.

    AI Agents Breached 395 Firms

    On August 31st, a likely Russian-speaking actor used AI to develop and test exploits against PaperCut NG and MF. The actor then deployed hundreds of AI agents against potential targets.

    In addition, the campaign moved rapidly. The actor reached remote code execution against a real victim in under four hours. Two hours later, the actor reached domain administrator access. During the wider campaign, the actor compromised 11 organizations within 26 seconds. In one case, domain administrator access followed within seven minutes.

    PaperCut Became the Entry Point

    Furthermore, two vulnerabilities created the opening. CVE-2026-81578 involves improper access control in the web management interface. CVE-2026-82078 involves unsafe dynamic class loading in database connection utilities. Attackers could chain both flaws to achieve remote code execution without authentication.

    First, the actor built a private lab containing vulnerable PaperCut software and an Active Directory server. Next, the actor tested the exploits before scanning for potential targets. Then, AI agents helped pursue targets through parallel operations.

    AI Changed the Scale

    Notably, the campaign matters because AI agents handled several attack tasks simultaneously. They helped develop exploits, test them, identify targets, and launch attacks. As a result, one operator could pursue numerous systems without manually controlling every step.

    However, the approach did not succeed everywhere. GreyNoise observed domain administrator access at 12 victim organizations. Cloudflare’s Web Application Firewall also blocked an attempted compromise. Even so, the campaign demonstrated how automation can expand exploitation across many targets.

    Defenders Must Move Faster

    PaperCut disclosed the vulnerabilities on August 27 and warned about active exploitation. In addition, the company released emergency patches and later published maintenance releases on September 10. Now, organizations should install supported updates and restrict public access to affected PaperCut Application Servers.

    However, the wider concern extends beyond PaperCut. Attackers can combine AI agents with security tools and newly disclosed vulnerabilities. Therefore, organizations need timely patching, restricted exposure, and monitoring for suspicious activity.

    Ultimately, AI does not need to replace attackers to change cyber operations. Instead, agents can handle repetitive tasks while humans direct the broader campaign. That combination could give attackers more opportunities to exploit vulnerable software at scale.

    AI agents AI cyberattacks AI security Artificial Intelligence automated attacks Cyber Defense Cyber Threats CyberAttack Cybercrime cybersecurity cybersecurity threats Data Security Enterprise Security hacking PaperCut PaperCut MF PaperCut NG PaperCut vulnerability PaperCut zero-day security breach software vulnerabilities Threat Intelligence Zero-day exploit zero-day vulnerability
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email
    fariehan

    Related Posts

    IDScan Hack Exposes 153 Million Driver’s Licenses on Dark Web

    September 17, 2026

    DeepSeek Files for Shanghai IPO at Massive $74B Valuation

    September 17, 2026

    Hackers Chain PaperCut Zero-Days to Bypass Authentication

    September 17, 2026

    Comments are closed.

    Top Posts

    Coinbase responds to hack: customer impact and official statement

    May 22, 2025

    Cursor AI Hits 1 Million Daily Users. Why Developers Are Switching to This Coding Tool

    March 23, 2026

    Anthropic Will Use Claude User Chats For Data Training

    October 16, 2025

    MIT Study Reveals ChatGPT Impairs Brain Activity & Thinking

    June 29, 2025
    Don't Miss
    Cybersecurity & Online Safety

    IDScan Hack Exposes 153 Million Driver’s Licenses on Dark Web

    By fariehanSeptember 17, 2026

    Recently, an IDScan hack has exposed a collection of driver’s license scans on a dark…

    DeepSeek Files for Shanghai IPO at Massive $74B Valuation

    September 17, 2026

    Hackers Chain PaperCut Zero-Days to Bypass Authentication

    September 17, 2026

    Claude Mythos 5 Refused to Stop Hacking Live Corporate Target

    September 17, 2026
    Stay In Touch
    • Facebook
    • Twitter
    About Us
    About Us

    Evolving from Phronesis News, Phronews brings deep insight and smart analysis to the world of technology. Stay informed, stay ahead, and navigate tech with wisdom.
    We're accepting new partnerships right now.

    Email Us: info@phronews.com

    Facebook X (Twitter) Pinterest YouTube
    Our Picks
    Most Popular

    Coinbase responds to hack: customer impact and official statement

    May 22, 2025

    Cursor AI Hits 1 Million Daily Users. Why Developers Are Switching to This Coding Tool

    March 23, 2026

    Anthropic Will Use Claude User Chats For Data Training

    October 16, 2025
    © 2025. Phronews.
    • Home
    • About Us
    • Get In Touch
    • Privacy Policy
    • Terms and Conditions

    Type above and press Enter to search. Press Esc to cancel.