Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    GO Transit to run ‘modified schedule’ after Toronto prepare derailment: CEO – Toronto

    February 3, 2026

    Winter Olympics to showcase Italian venues

    February 3, 2026

    Avalanche thinks the fusion energy trade ought to suppose smaller

    February 3, 2026
    Facebook X (Twitter) Instagram
    Tuesday, February 3
    Trending
    • GO Transit to run ‘modified schedule’ after Toronto prepare derailment: CEO – Toronto
    • Winter Olympics to showcase Italian venues
    • Avalanche thinks the fusion energy trade ought to suppose smaller
    • Gold costs in Pakistan As we speak
    • YouTuber Rajab Butt, Nadeem Naniwala method IHC over journey ban
    • Bitcoin ETFs Rebound $562M After $1.5B Outflows
    • Agriculture Division Lahore Jobs 2026 2026 Job Commercial Pakistan
    • Gambhir beneath strain as India purpose for back-to-back T20 triumphs
    • Ubisoft Fires Murderer’s Creed Dev After Criticizing Studio Publicly
    • Nylander’s return offers Leafs much-needed elevate
    Facebook X (Twitter) Instagram Pinterest Vimeo
    The News92The News92
    • Home
    • World
    • National
    • Sports
    • Crypto
    • Travel
    • Lifestyle
    • Jobs
    • Insurance
    • Gaming
    • AI & Tech
    • Health & Fitness
    The News92The News92
    Home - AI & Tech - Notepad++ says Chinese language authorities hackers hijacked its software program updates for months
    AI & Tech

    Notepad++ says Chinese language authorities hackers hijacked its software program updates for months

    Naveed AhmadBy Naveed AhmadFebruary 3, 2026No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Notepad++ says Chinese language authorities hackers hijacked its software program updates for months
    Share
    Facebook Twitter LinkedIn Pinterest Email


    The developer of the favored open supply textual content editor Notepad++ has confirmed that hackers hijacked the software program to ship malicious updates to customers over the course of a number of months in 2025.

    In a blog post revealed Monday, Notepad++ developer Don Ho stated that the cyberattack was seemingly carried out by hackers related to the Chinese language authorities between June and December 2025, citing a number of analyses by safety specialists who examined the malware payloads and assault patterns. Ho stated this “would clarify the extremely selective focusing on” seen through the marketing campaign.

    Rapid7, which investigated the incident, attributed the hacking to Lotus Blossom, a long-running espionage group recognized to work for China, and stated the hacks focused authorities, telecom, aviation, essential infrastructure, and media sectors.

    Notepad++ is likely one of the longest-running open supply initiatives, spanning greater than 20 years, and it counts a minimum of tens of thousands and thousands of downloads up to now, together with by workers at organizations around the globe.  

    Based on Kevin Beaumont, a safety researcher who first discovered the cyberattack and wrote up his findings in December, the hackers compromised a small variety of organizations “with pursuits in East Asia” after somebody unwittingly used a tainted model of the favored software program. Beaumont stated that the hackers have been in a position to acquire “hands-on” entry to the computer systems of victims who have been operating hijacked variations of Notepad++. 

    Ho stated that the “actual technical mechanism” of how the hackers broke into his servers stays underneath investigation, however supplied some particulars as to how the assault went down. 

    Within the weblog, Ho stated that Notepad++’s web site was hosted on a shared internet hosting server. The attackers “particularly focused” Notepad++’s internet area with the purpose of exploiting a bug within the software program to redirect some customers to a malicious server run by the hackers. This allowed the hackers to ship malicious updates to sure customers who had requested a software program replace, till the bug was fixed in November and the hackers’ entry was terminated in early December.

    “We do have logs indicating that the dangerous actor tried to re-exploit one of many mounted vulnerabilities; nonetheless, the try didn’t succeed after the repair was applied,” wrote Ho. 

    In an e-mail, Ho advised TechCrunch that his internet hosting supplier confirmed his shared server was compromised however that the supplier didn’t say how the hackers initially broke in.

    Ho apologized for the incident, and urged customers to obtain the most recent version of his software program, which accommodates a repair for the bug.

    The cyberattack focusing on Notepad++ customers is considerably harking back to the 2019-2020 cyberattack affecting prospects of SolarWinds, a software program firm that makes IT and community administration instruments for big Fortune 500 organizations, together with authorities departments. Russian authorities spies hacked into the corporate’s servers and secretly planted a backdoor in its software program, permitting the Russian spies to entry information on these prospects’ networks as soon as the replace had rolled out.

    The SolarWinds breach affected a number of authorities companies, together with Homeland Safety and the Departments of Commerce, Vitality, Justice, and State.

    Up to date with a response from Ho and with extra particulars from Rapid7.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleThe west’s pivot to Beijing
    Next Article England search redemption at T20 World Cup
    Naveed Ahmad
    • Website
    • Tumblr

    Related Posts

    AI & Tech

    Avalanche thinks the fusion energy trade ought to suppose smaller

    February 3, 2026
    AI & Tech

    OpenAI launches new macOS app for agentic coding

    February 3, 2026
    AI & Tech

    Grubhub waives supply and repair charges on restaurant orders over $50

    February 3, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Demo
    Top Posts

    Zendaya warns Sydney Sweeney to maintain her distance from Tom Holland

    January 24, 20264 Views

    Lenovo’s Qira is a Guess on Ambient, Cross-device AI—and on a New Type of Working System

    January 30, 20261 Views

    Mike Lynch superyacht builder sues widow for £400m over Bayesian sinking

    January 25, 20261 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Demo
    Most Popular

    Zendaya warns Sydney Sweeney to maintain her distance from Tom Holland

    January 24, 20264 Views

    Lenovo’s Qira is a Guess on Ambient, Cross-device AI—and on a New Type of Working System

    January 30, 20261 Views

    Mike Lynch superyacht builder sues widow for £400m over Bayesian sinking

    January 25, 20261 Views
    Our Picks

    GO Transit to run ‘modified schedule’ after Toronto prepare derailment: CEO – Toronto

    February 3, 2026

    Winter Olympics to showcase Italian venues

    February 3, 2026

    Avalanche thinks the fusion energy trade ought to suppose smaller

    February 3, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms & Conditions
    • Advertise
    • Disclaimer
    © 2026 TheNews92.com. All Rights Reserved. Unauthorized reproduction or redistribution of content is strictly prohibited.

    Type above and press Enter to search. Press Esc to cancel.