PaperCut confirmed on 27 August that attackers were chaining two flaws in its NG and MF print servers to run code without logging in first. Huntress found the attack working in two customer networks; PaperCut shipped a fix on 1 September.
It is the same weak point PaperCut had in 2023, when a similar chain drew ransomware affiliates within days of disclosure. Whether this stays contained now depends on how fast unpatched servers get the new update.
