Unconfigured Ad Widget

Collapse

Update Your Notepad++

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • SactoDoug
    CGN/CGSSA Contributor - Lifetime
    CGN Contributor - Lifetime
    • Oct 2013
    • 2491

    Update Your Notepad++

    For those who use Notepad++, its update servers were compromised by the CCP late last year. If you updated it any time during the last half of 2025, there is a chance you might have downloaded malicious code. Notepad++ has since removed the malicious code and hardened their infrastructure to prevent it from happening again. Update your Notepad++ asap if you might have gotten the bad updates.
    Last edited by SactoDoug; 02-03-2026, 11:20 AM.
    Block Google Tracking and Ads with a Raspberry Pi Hole
  • #2
    arrix
    Veteran Member
    • May 2012
    • 3827

    Was a pretty sophisticated MITM attack. Thankfully I've not updated my version for over 3 years. lol
    There is no week nor day nor hour, when tyranny may not enter upon this country, if the people lose their supreme confidence in themselves -- and lose their roughness and spirit of defiance -- Tyranny may always enter -- there is no charm, no bar against it -- the only bar against it is a large resolute breed of men.

    -Walt Whitman

    Comment

    • #3
      Reno-Kid
      Veteran Member
      • Apr 2021
      • 2645

      This is crazy. It's not compromised code, but how it was done. Seems they can intercept and redirect targeted traffic.


      According to the analysis provided by the security experts, the attack involved infrastructure-level compromise that allowed malicious actors to intercept and redirect update traffic destined for notepad-plus-plus.org. The exact technical mechanism remains under investigation, though the compromise occurred at the hosting provider level rather than through vulnerabilities in Notepad++ code itself. Traffic from certain targeted users was selectively redirected to attacker-controlled malicious update manifests.

      Comment

      Working...
      UA-8071174-1