State-sponsored threat actors compromised the popular code editor's hosting provider to redirect targeted users to malicious downloads.
The cybersecurity community is still grappling with a sobering realization: one of the most ubiquitous tools in the developer’s toolkit, Notepad++, was hiding a critical vulnerability for over six ...
By AJ Vicens Feb 2 (Reuters) - A Chinese-linked cyberespionage group with a long history hijacked the update process for the popular code editing platform Notepad++ to deliver a custom backdoor and ...
Notepad++ targeted and used to deliver poisoned updates to a select group of victims.
Notepad++ improves security mechanisms and closes a new vulnerability that allows attackers to execute malicious code.
Security researchers believe that Chinese hackers are to blame for the attack in part because of the "selective" nature of ...
Notepad++ 8.9.2 fixes update hijack exploited to deliver malware, patches RCE flaw, and hardens WinGUp security.
CISA has expanded its KEV catalog with new SolarWinds, Notepad++, and Apple flaws, including two exploited as zero-days.
Notepad++ released a security patch to reinforce its update process with a “double-lock” design after a sophisticated ...
Worried about the Notepad++ supply chain attack? Notepad++ 8.9.2 adds "Double-Lock" security to stop malware hijacking.