Magna5 Cybersecurity Notification: PaperCut MF/NG Security Advisory

Friday, 28 August 14:30 EDT

Magna5 is sharing this awareness notification regarding a recently disclosed security advisory affecting PaperCut MF/NG.

Magna5 is reviewing available data to identify customers that may use PaperCut and is reaching out directly where PaperCut-related systems are observed. Organizations that use PaperCut MF/NG should review the vendor advisory and validate whether any PaperCut MF/NG servers in their environment require remediation.

What is it?

PaperCut has published an urgent security advisory for PaperCut MF/NG. The advisory includes recommended actions, emergency patch information, and investigation guidance for potential indicators of compromise.

PaperCut’s advisory is available here:

[https://www.papercut.com/kb/Main/security-bulletin-27-aug-2026-urgent-security-advisory/]

What are we doing?

Magna5 is reviewing customer environments where visibility is available to identify PaperCut-related endpoints. Where PaperCut-related systems are observed, Magna5 may contact affected customers directly with additional information.

Please note that PaperCut client software may appear on workstations; however, based on the advisory, PaperCut MF/NG servers are the systems currently in scope for remediation. Customers may also have PaperCut MF/NG servers that are not visible to Magna5, and those systems should be reviewed as applicable.

Customer Action Customers that use PaperCut MF/NG should review the PaperCut advisory and take appropriate action based on their environment.

Recommended actions include:

  • Identify any PaperCut MF/NG servers in the environment.
  • Review whether any PaperCut MF/NG servers are internet-facing.
  • Restrict external access to PaperCut servers until patching and validation are complete, where applicable.
  • Apply the latest PaperCut emergency patch or security update referenced in the advisory to affected PaperCut MF/NG servers.
  • Review PaperCut and host logs using the indicators of compromise and investigation guidance provided by PaperCut.
  • If suspicious activity is identified, isolate the affected system, preserve relevant logs, rotate administrative or service account credentials associated with PaperCut, and begin incident response procedures.
  • Confirm remediation by validating the installed PaperCut version/build after patching and ensuring the service is operating as expected.

Contact / Follow-Up If you have any questions or believe your environment may be affected, please contact cybersecurity@magna5.com.

Affected components
  • General Cybersecurity & Maintenance Notifications