The hosting provider's compromise allowed attackers to deliver malware through tainted software updates for six months.
The developer did not specify when they became aware of the attack, but said that “all attacker access was definitively ...
The group targets telecoms, critical infrastructure - all the usual high-value orgs Security researchers have attributed the ...
State-sponsored threat actors compromised the popular code editor's hosting provider to redirect targeted users to malicious ...
A Chinese-linked cyberespionage group targeted Notepad++'s update process to deploy malware. The attack from June to December 2025 selectively affected users, prompting investigations. Hosting ...
A Chinese-linked cyberespionage group named Lotus Blossom hijacked the update process of Notepad++ to target specific users. Gaining access in June 2025, they maintained control until December that ...