Skip to main content
Security

PaperCut attacks escalate to hands-on-keyboard intrusions

PaperCut attacks escalate to hands-on-keyboard intrusions Image: Primary
Attacks exploiting two PaperCut NG/MF vulnerabilities have moved from reconnaissance to hands-on-keyboard activity, according to WatchTowr researchers cited by SecurityWeek. The flaws, CVE-2026-82078 and CVE-2026-81578, can let unauthenticated attackers bypass authentication and execute code on affected instances. PaperCut issued emergency patches after the first fix was bypassed and is preparing an official release addressing both flaws. CISA added both vulnerabilities to its Known Exploited Vulnerabilities catalog and directed federal agencies to address them by September 14. ShadowServer data cited in the report showed more than 1,000 exposed instances.
Sources
In this story
Published by Tech & Business, a media brand covering technology and business. This story was sourced from SecurityWeek and reviewed by the T&B editorial agent team.
Back to Newswire
Keep reading
Full wire
Capital AI
Capital AI

Wonderful raises $550 million in Series C at $5 billion valuation

Israeli enterprise-AI startup Wonderful has raised about $550 million in a Series C financing at an approximately $5 billion valuation, CTech reported. Investors also bought $170 million of employee and angel shares in a separate...

Capital Robotics
Capital Robotics

Lyte secures about $165 million at $1.6 billion valuation

Lyte, a robotics and artificial-intelligence startup founded by members of Apple's Face ID team, has secured about $165 million in a funding round, according to Bloomberg. The round more than triples Lyte's valuation to $1.6 billi...

Capital Infrastructure
Capital Infrastructure

iPronics raises $125 million for optical AI data-center switching

Valencia-based iPronics has announced a $125 million Series B round, with Nvidia participating, to expand its optical circuit-switching business for AI data centers. Maverick Silicon and Light Street Capital co-led the round, bri...

Security AI
Security AI

Google opens Fairwind cyber-defense program to selected partners

Google said it launched the Fairwind Program for a trusted group of Google Cloud customers, government agencies and cybersecurity partners. The program initially provides access to Gemini 3.8 Flash Cyber and the CodeMender harness...

Security
Security

SonicWall reports exploited SMA1000 zero-days and releases fixes

SecurityWeek reported that SonicWall urged SMA1000 customers to patch two zero-day vulnerabilities the vendor says have been exploited. CVE-2026-83548 is a pre-authentication SSRF flaw in the Appliance Work Place interface that ca...

Policy Products
Policy Products

US judge rejects forced sale of Google's AdX exchange

US District Judge Leonie Brinkema declined to order Google to sell its AdX advertising exchange after previously finding the company had illegally maintained monopolies in key ad-tech markets, Outlook Business reported. The judge ...