Notepad++ Updater Compromised, Malware Installed on User PCs

Notepad++ Updater Compromised, Malware Installed on User PCs

First seen 10 Dec 2025, 19:49 UTC Heise.DeVoi.IdBleepingcomputerCyberpressTechzine.Eu+2 43.2

Article Content

Browse articles
ThreatCluster

Notepad++ users are facing a security issue due to a vulnerability in the application's update framework, WinGUP. This flaw allows attackers to intercept network connections and deliver malware during the update process. The developer has released an update to version 8.8.9, but users must perform the update manually.