Infrastructure delivering updates for Notepad++—a widely used text editor for Windows—was compromised for six months by ...
Notepad++ 8.9.2 fixes update hijack exploited to deliver malware, patches RCE flaw, and hardens WinGUp security.
Notepad++ has adopted a "double-lock" design for its update mechanism to address recently exploited security gaps that ...
Miscreants will need to find another avenue for malware shenanigans Notepad++ has continued beefing up security with a ...
Worried about the Notepad++ supply chain attack? Notepad++ 8.9.2 adds "Double-Lock" security to stop malware hijacking.
The program is a free text and code editor that's been downloaded millions of times. The compromise began in June and is likely to have involved a Chinese state-sponsored group.
TL;DR: Notepad++ was compromised for six months, but it wasn't the software itself which the exploit leveraged, but its hosting provider. An investigation into the attack has just been concluded with ...