Notepad++ Update Service Compromised by State-Sponsored Attack
First seen 2 Feb 2026, 19:29 UTC
•


•30.6
Export
Article Content
Browse articles
In 2025, Notepad++'s update service was compromised by a state-sponsored cyber criminal, leading to the injection of malware into the software. The incident prompted the release of version 8.8.9 on December 9, which included a hardened update process that verified the signature and certificate of installers. Subsequently, version 8.9 was released on December 27, eliminating the use of a self-signed certificate and ensuring only a legitimate certificate from GlobalSign is used.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
Google Addresses Eighth Chrome Zero-Day Vulnerability in 2025
China-linked Cyber Group Expands Targeting to Southeastern Europe
China-Nexus APT UAT-7290 Targets South Asia Telecoms in Cyber Espionage Campaign
China-linked UAT-7290 Targets Telcos in Cyberespionage Campaign
UAT-7290 Cyber Espionage Targets South Asian Telecoms
Cisco Fixes Critical AsyncOS Vulnerability Under Attack