Rapid7 links China-linked Lotus Blossom to a 2025 Notepad++ hosting breach that delivered the Chrysalis backdoor via hijacked ...
Infrastructure delivering updates for Notepad++—a widely used text editor for Windows—was compromised for six months by suspected China-state hackers who used their control to deliver backdoored ...
Notepad++ is a favorite of programmers and other power users, but its auto-update function was compromised for months in 2025 ...
The developer of the popular text editor Notepad++ said hackers associated with the Chinese government hijacked its software ...
The popular Notepad alternative was hijacked by bad actors for several months in 2025, but the latest update appears to solve ...
State-backed attackers hijacked Notepad++ update traffic via a hosting provider breach, redirecting users to malicious ...
The developer did not specify when they became aware of the attack, but said that “all attacker access was definitively ...
Notepad++ has shared additional details on the supply chain attack carried out by Chinese state-sponsored hackers via a ...
Attackers had specifically delivered malware to systems using the Notepad++ updater. Investigations point to state actors.
The program is a free text and code editor that's been downloaded millions of times. The compromise began in June and is ...