Infrastructure delivering updates for Notepad++—a widely used text editor for Windows—was compromised for six months by ...
The popular Notepad alternative was hijacked by bad actors for several months in 2025, but the latest update appears to solve the issue.
Attackers had specifically delivered malware to systems using the Notepad++ updater. Investigations point to state actors.
State-backed attackers hijacked Notepad++ update traffic via a hosting provider breach, redirecting users to malicious ...
The program is a free text and code editor that's been downloaded millions of times. The compromise began in June and is ...
The developer did not specify when they became aware of the attack, but said that “all attacker access was definitively ...
A Chinese-linked cyberespionage group named Lotus Blossom hijacked the update process of Notepad++ to target specific users. Gaining access in June 2025, they maintained control until December that ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results