The cybersecurity community is still grappling with a sobering realization: one of the most ubiquitous tools in the developer’s toolkit, Notepad++, was hiding a critical vulnerability for over six ...
Notepad++ targeted and used to deliver poisoned updates to a select group of victims.
Security researchers believe that Chinese hackers are to blame for the attack in part because of the "selective" nature of the targets that were chosen for follow-on compromise via malicious software ...
Notepad++ improves security mechanisms and closes a new vulnerability that allows attackers to execute malicious code.
Notepad++ has adopted a "double-lock" design for its update mechanism to address recently exploited security gaps that ...
Feb 2 (Reuters) - A Chinese-linked cyberespionage group with a long history hijacked the update process for the popular code editing platform Notepad++ to deliver a custom backdoor and other malware ...
Infrastructure delivering updates for Notepad++—a widely used text editor for Windows—was compromised for six months by ...
Notepad++ released a security patch to reinforce its update process with a “double-lock” design after a sophisticated cyberattack exploited its auto-updater.
Notepad++ 8.9.2 fixes update hijack exploited to deliver malware, patches RCE flaw, and hardens WinGUp security.
CISA has expanded its KEV catalog with new SolarWinds, Notepad++, and Apple flaws, including two exploited as zero-days.