AI-Accelerated Exploitation: What the PaperCut Campaign Changes
The most important part of an AI-enabled cyberattack is not the label. It is the speed and scale that automation can give an attacker.
GreyNoise reported that an actor used hundreds of AI agents in a campaign against internet-reachable PaperCut MF and NG servers. Its August 31, 2026 analysis said the campaign compromised at least 440 instances across 395 organizations in 48 countries.
PaperCut separately published an urgent advisory for two vulnerabilities, CVE-2026-81578 and CVE-2026-82078, and urged customers to update affected PaperCut NG and MF installations.
The scale figures are GreyNoise's observations of the campaign. The vendor advisory provides the affected-product and remediation guidance. Keeping those sources separate matters when deciding what is known and what action to take.
What the campaign shows
GreyNoise described a system that used the OpenAI Codex harness to orchestrate agents and a DeepSeek model for attack logic, alongside reconnaissance and exploitation tools. This does not mean an OpenAI model independently chose targets or conducted the intrusion. It shows how existing AI and automation components can be assembled into an operational workflow.
The practical result is a shorter defender response window. An automated system can scan, test, retry, and move across exposed systems faster than a person working manually.
For small and mid-sized businesses, that makes three basics more urgent: know what is exposed, patch quickly, and check whether exploitation happened before the patch.
Understand the PaperCut risk
PaperCut's advisory says the vulnerabilities affect PaperCut NG and MF. PaperCut Hive and Pocket are not affected.
The reported attack chain involved an authentication bypass and an unsafe class-loading issue that could lead to remote code execution. An internet-reachable, unpatched management server therefore presents a much different risk from an internal system that is segmented, monitored, and already updated.
PaperCut listed fixed maintenance releases including 26.0.5, 25.0.13, and 24.1.10. Organizations should use the vendor's current advisory to confirm the appropriate supported version for their environment rather than relying on a copied version list indefinitely.
What organizations should do now
Find every installation
Inventory PaperCut NG and MF servers, their versions, owners, network exposure, and connected systems. Check cloud infrastructure, branch offices, acquired environments, and externally managed networks—not only the main data centre.
Remove unnecessary internet exposure
Management services should not be broadly internet-accessible unless there is a clear operational requirement. Restrict access using network controls, trusted administrative paths, and least privilege.
Apply the fixed release
Follow PaperCut's update instructions and verify the installed version after the change. If an immediate update is blocked, reduce exposure and document the temporary control and deadline. A mitigation is not a reason to leave the permanent fix unscheduled.
Check for compromise
Patching closes the known vulnerability; it does not remove access an attacker may already have established. Review the indicators and log guidance in the vendor and GreyNoise reports, including relevant server.log activity. Correlate that evidence with endpoint processes, new accounts, configuration changes, network connections, and authentication events.
If suspicious activity is found, isolate the system through the approved process, preserve evidence, rotate exposed credentials based on scope, and investigate connected assets.
How Outfaze can help
Outfaze helps organizations discover exposure through vulnerability assessment, coordinate urgent remediation with patch management, and investigate suspected access through digital forensics and incident response.
We focus on the questions that determine real risk: Is the product present? Is it reachable? Is it vulnerable? Was it targeted? Did the update succeed? Is there evidence that access remains?
AI may help attackers move faster. A current inventory and a rehearsed response process help defenders avoid losing time at the moment it matters most.
