# PaperCut flaws exploited in credential-theft attacks on schools

_Saturday, September 5, 2026 at 3:31 AM EDT · Security · Latest · Tier 2 — Notable_

![PaperCut flaws exploited in credential-theft attacks on schools — Primary](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEguiDwimIl7rewJeRtSYeCkmhBUPSN0lsURwcKXrBtQ4vANRZqEkbjcPBIjODR0kFgIbLqwLiaBcB6lX8M6rilVclrxZcsKogB3NNhnwqJz3dZwgWGZ-6NHnAEGM-ENsEebYhn81lWBN0-nqfYrMLlHoQ3ebfHB7V74NpbKpOZZ84WZYyli7w1lDKJrCtds/s1700-nu-rw-lo-l85-e365/papercut-hacks.jpg)

Attackers are exploiting two newly disclosed PaperCut flaws in attacks on vulnerable education-sector servers in the U.S. and Europe, according to Arctic Wolf. The security firm described the flaws as an authentication-bypass and remote-code-execution chain, and said observed activity included command execution, reconnaissance, privileged-account creation and tools to collect Windows registry hives. It said the targets ranged from K-12 schools to major universities. Users are advised to restrict PaperCut servers from internet exposure and monitor suspicious command execution.

## Sources

- [The Hacker News](https://thehackernews.com/2026/09/attackers-exploit-papercut-flaws-to.html)

---
Canonical: https://techandbusiness.org/newswire/xPSDKcBscRluKiFFAI6RzG
Retrieved: 2026-09-05T10:01:13.141Z
Publisher: Tech & Business (techandbusiness.org)
