Notepad++ released version 8.8.9 in December, which checks digital signatures and certificates before installing any updates.
Some Notepad++ users were redirected to malicious servers last year. Now, its developer says they were targeted by Chinese ...
It's believed that, between June and November 10/December 2, 2025 (independent security experts and its hosting provider ...
Rapid7 links China-linked Lotus Blossom to a 2025 Notepad++ hosting breach that delivered the Chrysalis backdoor via hijacked updates, fixed in v8.8.9 ...
The developer did not specify when they became aware of the attack, but said that “all attacker access was definitively terminated” by December 2nd. The Notepad++ updater has been updated itself with ...
State-sponsored threat actors compromised the popular code editor's hosting provider to redirect targeted users to malicious ...
The program is a free text and code editor that's been downloaded millions of times. The compromise began in June and is ...
Notepad++ is a favorite of programmers and other power users, but its auto-update function was compromised for months in 2025 ...
Attackers had specifically delivered malware to systems using the Notepad++ updater. Investigations point to state actors.
State-backed attackers hijacked Notepad++ update traffic via a hosting provider breach, redirecting users to malicious downloads since June 2025.
The brutal reviews are in. Here’s an updating roundup highlighting the sharpest (and meanest) commentary about Melania Trump’s new film.
Twitch streamer "Lacari" opened Notepad while live, not realizing that the new version saves your previous session. Oh boy.