Discussion
Loading...

#Tag

Log in
  • About
  • Code of conduct
  • Privacy
  • About Bonfire
Dr. Juande Santander-Vela boosted
Ben Royce 馃嚭馃嚘 馃嚫馃嚛
Ben Royce 馃嚭馃嚘 馃嚫馃嚛
@benroyce@mastodon.social  路  activity timestamp 4 days ago

I haven't used Notepad++ in awhile

Fortunately

If you still do

馃槵

https://techcrunch.com/2026/02/02/notepad-says-chinese-government-hackers-hijacked-its-software-updates-for-months/

" #Notepad++ says Chinese government hackers hijacked its #software updates for months"

#Notepadplusplus

TechCrunch

Notepad++ says Chinese government hackers hijacked its software updates for months | TechCrunch

The developer of the popular text editor Notepad++ said hackers associated with the Chinese government hijacked its software update mechanism to deliver tainted software to users for months.
  • Copy link
  • Flag this post
  • Block
Ben Royce 馃嚭馃嚘 馃嚫馃嚛
Ben Royce 馃嚭馃嚘 馃嚫馃嚛
@benroyce@mastodon.social  路  activity timestamp 4 days ago

I haven't used Notepad++ in awhile

Fortunately

If you still do

馃槵

https://techcrunch.com/2026/02/02/notepad-says-chinese-government-hackers-hijacked-its-software-updates-for-months/

" #Notepad++ says Chinese government hackers hijacked its #software updates for months"

#Notepadplusplus

TechCrunch

Notepad++ says Chinese government hackers hijacked its software updates for months | TechCrunch

The developer of the popular text editor Notepad++ said hackers associated with the Chinese government hijacked its software update mechanism to deliver tainted software to users for months.
  • Copy link
  • Flag this post
  • Block
Karis boosted
Marcus "MajorLinux" Summers
Marcus "MajorLinux" Summers
@majorlinux@toot.majorshouse.com  路  activity timestamp 4 days ago

There are definitely lessons to be learned here.

Notepad++ users take note: It's time to check if you're hacked

https://arstechnica.com/security/2026/02/notepad-updater-was-compromised-for-6-months-in-supply-chain-attack/

#NotepadPlusPlus #Hack #SupplyChain #Vulnerability #Security #Tech

Sorry, no caption provided by author
Sorry, no caption provided by author
Sorry, no caption provided by author
Ars Technica

Notepad++ updater was compromised for 6 months in supply-chain attack

Suspected China-state hackers used update infrastructure to deliver backdoored version.
  • Copy link
  • Flag this post
  • Block
Marcus "MajorLinux" Summers
Marcus "MajorLinux" Summers
@majorlinux@toot.majorshouse.com  路  activity timestamp 4 days ago

There are definitely lessons to be learned here.

Notepad++ users take note: It's time to check if you're hacked

https://arstechnica.com/security/2026/02/notepad-updater-was-compromised-for-6-months-in-supply-chain-attack/

#NotepadPlusPlus #Hack #SupplyChain #Vulnerability #Security #Tech

Sorry, no caption provided by author
Sorry, no caption provided by author
Sorry, no caption provided by author
Ars Technica

Notepad++ updater was compromised for 6 months in supply-chain attack

Suspected China-state hackers used update infrastructure to deliver backdoored version.
  • Copy link
  • Flag this post
  • Block
Taggart
Taggart
@mttaggart@infosec.exchange  路  activity timestamp 4 days ago

Notepad++ versions and update mechanisms had been compromised since June until December 2025. Please update to 8.9.1 wherever you have this tool. It's unclear what malicious versions of the tool might do. I Recommend activating incident response for affected hosts.

https://notepad-plus-plus.org/news/hijacked-incident-info-update/

Come On Giant Asteroid!
Come On Giant Asteroid!
@VE2UWY@mastodon.radio replied  路  activity timestamp 4 days ago

@mttaggart

Ugh. Done. Thanks!

#Notepad++ #NotepadPlusPlus

  • Copy link
  • Flag this comment
  • Block
IAintShootinMis
IAintShootinMis
@iaintshootinmis@digitaldarkage.cc  路  activity timestamp 4 days ago

#CTI #Infosec #NotepadPlusPlus #Npp Here's a list of all the legitimate hashes for Notepad plus plus since April 2025.

Threat hunters, get a list of all the hashes of NPP in your environment, look for any that don't correspond to this list.

Hashes for 8.8.4 aren't available at this time, but if someone can provide them, I'll update the link.

@GossiTheDog https://gist.github.com/iaintshootinmis/4ad89830caf6be34c1f29bd6b9bbc5e6

  • Copy link
  • Flag this post
  • Block

BT Free Social

BT Free is a non-profit organization founded by @ozoned@btfree.social . It's goal is for digital privacy rights, advocacy and consulting. This goal will be attained by hosting open platforms to allow others to seamlessly join the Fediverse on moderated instances or by helping others join the Fediverse.

BT Free Social: About 路 Code of conduct 路 Privacy 路
Bonfire social 路 1.0.1 no JS en
Automatic federation enabled
Log in
  • Explore
  • About
  • Code of Conduct