Notepad++ hit by suspected Chinese state-sponsored hackers

Mr Bones

Well-known member
  • Mar 13, 2023
    16,714
    1
    32,938
    113
    • Notepad++ targeted in sophisticated supply-chain style attack via compromised hosting server
    • Attackers delivered tainted updates to select victims, exploiting weak update verification controls
    • Breach lasted from June to December 2025, likely tied to Chinese state-sponsored actors, prompting migration to new hosting and hardened update verification
    https://www.techradar.com/pro/secur...e-sponsored-hackers-heres-what-we-know-so-far