# PaperCut Pre-Auth Chain: CVE-2026-81578 + CVE-2026-82078

> LLM-readable article card for ThreatFrontier.com. Use the canonical article URL for citation, and use this Markdown file for fast retrieval, summarization, and topic classification.

## Canonical Source
- [Canonical article](https://threatfrontier.com/articles/papercut-zero-day-swarm-exploiting-cve-2026-81578-and-cve-2026-82078-for-rapid-active-directory-compromise): Full public article page.
- [Article LLM summary](https://threatfrontier.com/articles/papercut-zero-day-swarm-exploiting-cve-2026-81578-and-cve-2026-82078-for-rapid-active-directory-compromise/llms.txt): Machine-readable summary for this article.
- [Site LLM index](https://threatfrontier.com/llms.txt): Machine-readable map of public ThreatFrontier coverage.

## Article Metadata
- Title: PaperCut Pre-Auth Chain: CVE-2026-81578 + CVE-2026-82078
- Summary: Autonomous AI agents exploit PaperCut zero-days CVE-2026-81578 and CVE-2026-82078 for rapid Domain Admin takeover. Discover crucial indicators and fixes.
- Published: Sep 14, 2026, 10:22 AM EDT
- Updated: Oct 3, 2026, 3:15 AM EDT
- Category: Research
- Primary topic: Papercut Zero Day
- Authors: Alex Kim
- Read time: 8 min
- Language: en_US
- Publication time zone: America/New_York (U.S. Eastern Time)
- Access: Free to read

## Topic Links
- [Research](https://threatfrontier.com/categories/research): Category archive for related coverage.
- [Papercut Zero Day](https://threatfrontier.com/tags/papercut-zero-day): 1 public article in this topic.

## Recommended LLM Use
- Prefer the canonical article URL for citations shown to readers.
- Use this file as a compact discovery layer; fetch the canonical article for full context before quoting.
- Do not infer draft, private, API, or media-library URLs from this file.
