Code Defence Cyber security

PaperCut warns of active zero day exploitation targeting NG and MF print management platforms

Security advisories published by print management software maintainers confirm that threat actors are actively exploiting an unpatched vulnerability in commercial print management servers. The attack vector allows unauthenticated remote actors to submit malformed requests to execute arbitrary system commands.

The security flaw impacts all versions of PaperCut NG and PaperCut MF print management software. Threat monitoring telemetry confirms active zero-day exploitation attempts targeting internet-exposed print management web panels. Attackers issue malformed HTTP requests to bypass authentication handlers and execute shell commands under high-privilege system contexts on hosting print servers.

Compromising print management servers provides adversaries with unmonitored persistence across internal enterprise networks. Because print servers hold Active Directory service accounts, active print job logs, and broad network routing permissions, an unauthenticated compromise permits threat actors to extract user credentials, intercept confidential printed documents, and move laterally into connected subnets.

– Upgrade PaperCut NG and PaperCut MF software installations immediately to emergency patched release builds published by PaperCut.

– Restrict external internet visibility to PaperCut web management panels by placing servers behind isolated, non-routable VLANs.

– Inspect print server system logs for anomalous process spawns or unverified administrative session creations.

– Audit Active Directory service accounts associated with print server daemons for unauthorized privilege escalation.

Print infrastructure defense requires strict network microsegmentation and immediate security patch deployment to ensure commercial print servers remain insulated from unauthenticated command execution. #CodeDefence #PaperCut #ZeroDay #RCE #PrintSecurity #AppSec #PatchManagement #NetworkSecurity
/

Scroll to Top