<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"><channel><title>PaperCut Zero-Day Exploited in Attacks, Affecting All NG and MF Versions — Live Feed</title><link>https://www.live-feeds.com/feed/papercut-zero-day-exploited-in-attacks-affecting-all-ng-and-mf-versions</link><atom:link xmlns:atom="http://www.w3.org/2005/Atom" href="https://www.live-feeds.com/feed/papercut-zero-day-exploited-in-attacks-affecting-all-ng-and-mf-versions/rss.xml" rel="self" type="application/rss+xml"/><description>Continuously updated, source-cited coverage.</description>
<item><title>CISA Adds PaperCut Zero-Days to Known Exploited Vulnerabilities Catalog</title><link>https://www.live-feeds.com/feed/papercut-zero-day-exploited-in-attacks-affecting-all-ng-and-mf-versions</link><guid isPermaLink="false">https://www.live-feeds.com/feed/papercut-zero-day-exploited-in-attacks-affecting-all-ng-and-mf-versions#u54692</guid><pubDate>Wed, 02 Sep 2026 09:55:13 +0000</pubDate><description>The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2026-81578 and CVE-2026-82078 to its Known Exploited Vulnerabilities catalog. Attackers are now using these flaws to conduct data theft and hands-on-keyboard intrusions. These vulnerabilities affect all versions of PaperCut NG and MF print management software. While patches were released last week, active exploitation continues as hackers move beyond automated scripts to manual system manipulation.Why it mattersThese vulnerabilities allow attackers to bypass authentication and execute remote code. A Metasploit module ha</description></item>
<item><title>PaperCut Zero-Day Chain Exploited via Metasploit as 47% of Servers Remain Unpatched</title><link>https://www.live-feeds.com/feed/papercut-zero-day-exploited-in-attacks-affecting-all-ng-and-mf-versions</link><guid isPermaLink="false">https://www.live-feeds.com/feed/papercut-zero-day-exploited-in-attacks-affecting-all-ng-and-mf-versions#u53436</guid><pubDate>Tue, 01 Sep 2026 01:55:10 +0000</pubDate><description>Attackers are using a chain of zero-day vulnerabilities, CVE-2026-81578 and CVE-2026-82078, to bypass authentication and execute remote code on PaperCut NG and MF servers. A new Metasploit Framework module created by Stephen Fewer makes these exploits more accessible. Despite two emergency patches, 47% of tracked installations remain vulnerable. Compromised internet-facing servers are being loaded with legitimate remote access software to maintain persistence. PaperCut confirmed customer incidents shortly before the Metasploit module was submitted.Why it mattersThe vulnerabilities affect all v</description></item>
<item><title>PaperCut Zero-Day Exploited in Attacks, Affecting All NG and MF Versions</title><link>https://www.live-feeds.com/feed/papercut-zero-day-exploited-in-attacks-affecting-all-ng-and-mf-versions</link><guid isPermaLink="false">https://www.live-feeds.com/feed/papercut-zero-day-exploited-in-attacks-affecting-all-ng-and-mf-versions#u51955</guid><pubDate>Sun, 30 Aug 2026 03:55:43 +0000</pubDate><description>Attackers are exploiting a zero-day vulnerability in PaperCut, affecting all NG and MF versions. The vulnerability allows for code execution without authentication. PaperCut has released emergency patches to address the issue. Multiple sources confirm the exploitation and patch releases.Why it mattersThe exploitation of the PaperCut zero-day vulnerability highlights the ongoing threat of unpatched software vulnerabilities being targeted by attackers. PaperCut is a popular print management software used in various organizations. The vulnerability&amp;#039;s exploitation could lead to unauthorized a</description></item>
</channel></rss>