PaperCut has launched new security maintenance releases to replace previously issued emergency patches that addressed two critical security vulnerabilities. The latest versions, PaperCut NG/MF 26.0.5, 25.0.13, and 24.1.10, are now available for download and have undergone complete Quality Assurance testing. These updates incorporate all prior emergency security fixes along with additional hardening measures. The company emphasized that these are regular maintenance releases that have been subjected to standard release testing processes. The vulnerabilities, identified as CVE-2026-81578 and CVE-2026-82078, had been actively exploited, allowing attackers to bypass authentication and execute arbitrary code on affected systems. A notable case involved a suspected Russian-speaking threat actor exploiting these flaws to infiltrate 395 organizations across 48 nations, with a significant focus on the U.S. education sector. The attacks utilized advanced AI agents from OpenAI’s Codex and DeepSeek models to execute attacks while circumventing targets in specific countries, including Russia and China. The threat originated from the IP address "45.142.193.132." While the intentions of the threat actor remain unclear, users are strongly advised to implement the latest maintenance releases to ensure robust protection. For customers currently using an emergency patch build, transitioning to a maintenance release is recommended to fortify defenses against these vulnerabilities.