Active exploitation of BeyondTrust enables unauthenticated RCE as CISA adds Apple, Microsoft, SolarWinds, and Notepad++ flaws ...
The hosting provider's compromise allowed attackers to deliver malware through tainted software updates for six months.
State-backed attackers hijacked Notepad++ update traffic via a hosting provider breach, redirecting users to malicious downloads since June 2025.
A Chinese-linked cyberespionage group with a long history hijacked the update process for the popular code editing platform ...
Last year, the creator of Notepad++ rolled out an update for the text and source code editor after security experts reported ...
Attackers had specifically delivered malware to systems using the Notepad++ updater. Investigations point to state actors.
I don’t need tabs, sessions, or extra clutter in a tool I open for two seconds. Notepad++ stays fast, simple, and doesn't ...
Chinese state-sponsored threat actors were likely behind the hijacking of Notepad++ update traffic last year that lasted for almost half a year, the developer states in an official announcement today.
Microsoft fixes a critical Notepad vulnerability in Windows 11 that could allow remote code execution via malicious Markdown files. Here are the details ...
Developers are navigating confusing gaps between expectation and reality. So are the rest of us. Depending who you ask, AI-powered coding is either giving software developers an unprecedented ...
A Chinese-linked cyberespionage group named Lotus Blossom hijacked the update process of Notepad++ to target specific users. Gaining access in June 2025, they maintained control until December that ...
The popular Notepad alternative was hijacked by bad actors for several months in 2025, but the latest update appears to solve ...