JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser .
Notepad++ targeted in sophisticated supply-chain style attack via compromised hosting server
Attackers delivered tainted updates to select victims, exploiting weak update verification controls
Breach lasted from June to December 2025, likely tied to Chinese state-sponsored actors, prompting migration to new hosting and hardened update verification
https://www.techradar.com/pro/secur...e-sponsored-hackers-heres-what-we-know-so-far