All signals
Russian-Speaking Threat Actor Uses Hundreds of AI Agents to Exploit PaperCut Flaws, Compromises 440 Servers Across 395 Organizations in 48 Countries
Sources: GreyNoise threat intelligence report, Blackpoint Cyber principal MDR analyst Nevan Beal statement to The Hacker News, TechRepublic, BleepingComputer, SecurityWeek, The Register, CybersecurityNews, GBHackers, CyberPress, all September 10-11, 2026. PaperCut Software emergency security bulletin August 28, 2026. Arctic Wolf prior flagging of IP address 45.142.193.132 noted by multiple outlets.
A suspected Russian-speaking cyber actor used hundreds of artificial intelligence agents built on OpenAI Codex and a DeepSeek model to exploit two recently disclosed zero-day vulnerabilities in PaperCut NG/MF print management software, compromising at least 440 instances across 395 organizations in 48 countries, according to independent reports from GreyNoise and Blackpoint Cyber published September 10 and 11. The campaign began August 31, 2026, and targeted CVE-2026-81578, an authentication bypass flaw, and CVE-2026-82078, an unsafe reflection remote code execution vulnerability. GreyNoise data indicates the operation harvested credentials from 280 victims and obtained domain administrator privileges at 12 organizations. The education sector bore the brunt of the attack, accounting for 204 of the compromised organizations, including a US high school that fell from initial access to full domain administrative control in seven minutes. The adversary went from an empty workspace to first achieving remote code execution against a real victim in under four hours, first domain admin in an additional two hours, and once the full campaign launched, compromised at least 11 organizations in 26 seconds, according to GreyNoise. Rather than merely generating static exploit code, the AI agents functioned as an autonomous engineering unit, analyzing patches, replicating code execution paths in a local virtual lab, building Go-based multi-threaded scanning tools, and refining network probes based on real-time errors, Blackpoint stated. The agents also generated target lists through the Netlas internet scanning and discovery platform. The operation staged partly from IP address 45.142.193.132, which GreyNoise had tracked since early July 2026 for probing internet-facing systems from vendors including Palo Alto, Ubiquiti, Citrix, SonicWall, and Proxmox VE. This marks the first documented case of AI agents orchestrating the entire lifecycle of a large-scale exploitation campaign at