State-sponsored threat actors compromised the popular code editor's hosting provider to redirect targeted users to malicious ...
A quiet compromise of a popular open-source coding editor has turned into one of the most unsettling software supply-chain ...
State-backed attackers hijacked Notepad++ update traffic via a hosting provider breach, redirecting users to malicious downloads since June 2025.
Last year, the creator of Notepad++ rolled out an update for the text and source code editor after security experts reported ...
Suspected Chinese state-backed hackers reportedly hijacked Notepad++'s update system for months, targeting select users and ...
Notepad++ has been compromised in a sophisticated nation-state cyberattack. Learn about the security breach, the ...
Notepad++ has shared additional details on the supply chain attack carried out by Chinese state-sponsored hackers via a ...
Rapid7 dropped a write-up on the Notepad++ update-chain abuse and - finally - it comes with real IOCs - update.exe downloaded ...
Security researchers believe that Chinese hackers are to blame for the attack in part because of the "selective" nature of the targets that were chosen for follow-on compromise via malicious software ...
The program is a free text and code editor that's been downloaded millions of times. The compromise began in June and is ...
Notepad++ targeted and used to deliver poisoned updates to a select group of victims.