The hosting provider's compromise allowed attackers to deliver malware through tainted software updates for six months.
Rapid7 links China-linked Lotus Blossom to a 2025 Notepad++ hosting breach that delivered the Chrysalis backdoor via hijacked ...
The developer did not specify when they became aware of the attack, but said that “all attacker access was definitively ...
State-sponsored threat actors compromised the popular code editor's hosting provider to redirect targeted users to malicious ...
A Chinese-linked cyberespionage group targeted Notepad++'s update process to deploy malware. The attack from June to December 2025 selectively affected users, prompting investigations. Hosting ...
XDA Developers on MSN
Notepad++ has allegedly been spying on targeted users after a malicious update got in
The attacks came from a third-party and not from the Notepad++ team.
A Chinese-linked cyberespionage group with a long history hijacked the update process for the popular code editing platform Notepad++ to deliver a ​custom backdoor and other malware to targeted users, ...
The popular Notepad alternative was hijacked by bad actors for several months in 2025, but the latest update appears to solve ...
Attackers had specifically delivered malware to systems using the Notepad++ updater. Investigations point to state actors.
Notepad++ has shared additional details on the supply chain attack carried out by Chinese state-sponsored hackers via a ...
State-backed attackers hijacked Notepad++ update traffic via a hosting provider breach, redirecting users to malicious ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results