Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New Threats

Access to clinical trials improves outcomes for patients with rare cancers

£21.5m grant to pioneer the future of UK farming

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Notepad++ official update mechanism is hijacked and malware is distributed to specific users
Identity

Notepad++ official update mechanism is hijacked and malware is distributed to specific users

userBy userFebruary 2, 2026No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

Ravi LakshmananFebruary 2, 2026Threat Intelligence/Malware

Notepad has been hacked

Administrators of Notepad++ have revealed that state-sponsored attackers have hijacked the utility’s update mechanism and instead redirected update traffic to a malicious server.

“This attack [an] “This resulted in an infrastructure-level compromise that allowed a malicious attacker to intercept and redirect update traffic destined for notepad-plus-plus.org. This compromise occurred at the hosting provider level, rather than through a vulnerability in the Notepad++ code itself,” said developer Don Ho.

The exact mechanism by which this was achieved is currently under investigation, Ho added.

The development comes a little more than a month after Notepad++ released version 8.8.9 to address an issue where traffic from WinGUp, a Notepad++ updater, was “occasionally” redirected to malicious domains and downloaded tainted executables.

cyber security

Specifically, the issue stemmed from the way the updater verified the integrity and authenticity of downloaded update files, allowing an attacker who was able to intercept network traffic between the updater client and the update server to trick the tool into downloading a different binary instead.

It is believed that this redirect was highly targeted, with traffic originating only from a specific user being routed to a rogue server to retrieve the malicious component. The incident is estimated to have begun in June 2025, more than half a year before it was discovered.

Independent security researcher Kevin Beaumont revealed that this flaw was being exploited by Chinese attackers to hijack networks and trick targets into downloading malware. In response to a security incident, the Notepad++ website has been migrated to a new hosting provider.

“According to the former hosting provider, the shared hosting server was compromised until September 2, 2025,” Ho explained. “Even after losing access to the server, the attackers retained credentials to internal services until December 2, 2025, allowing them to continue redirecting Notepad++ update traffic to the malicious server.”


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleeScan antivirus update server compromised and delivers multi-stage malware
Next Article £21.5m grant to pioneer the future of UK farming
user
  • Website

Related Posts

Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New Threats

February 2, 2026

eScan antivirus update server compromised and delivers multi-stage malware

February 2, 2026

Open VSX supply chain attack uses compromised development accounts to spread GlassWorm

February 2, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New Threats

Access to clinical trials improves outcomes for patients with rare cancers

£21.5m grant to pioneer the future of UK farming

Notepad++ official update mechanism is hijacked and malware is distributed to specific users

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2026 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.