Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Darkly)
  • No Skin
Collapse
Brand Logo
  1. Home
  2. Uncategorized
  3. Notepad++'s update servers have been compromised by Chinese hackers and all users had been exposed to malware.

Notepad++'s update servers have been compromised by Chinese hackers and all users had been exposed to malware.

Scheduled Pinned Locked Moved Uncategorized
securityvulnerabilitywindowstexteditor
12 Posts 7 Posters 19 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • Lorenzo Ancora :verified:L This user is from outside of this forum
    Lorenzo Ancora :verified:L This user is from outside of this forum
    Lorenzo Ancora :verified:
    wrote last edited by
    #1

    Notepad++'s update servers have been compromised by Chinese hackers and all users had been exposed to malware. The developer estimated the overall compromise period spanned from June through December 2, 2025.
    Users should update to version 8.9.1 (or superior) immediately.

    Source: https://notepad-plus-plus.org/news/hijacked-incident-info-update/

    #security #vulnerability #windows #text #editor #notepad #foss #freesoftware #software

    vrtxdV John RockefellerR Otter SideO MicdanM TrimTab πŸ‡ΊπŸ‡¦T 5 Replies Last reply
    1
    0
    • R ActivityRelay shared this topic
    • Lorenzo Ancora :verified:L Lorenzo Ancora :verified:

      Notepad++'s update servers have been compromised by Chinese hackers and all users had been exposed to malware. The developer estimated the overall compromise period spanned from June through December 2, 2025.
      Users should update to version 8.9.1 (or superior) immediately.

      Source: https://notepad-plus-plus.org/news/hijacked-incident-info-update/

      #security #vulnerability #windows #text #editor #notepad #foss #freesoftware #software

      vrtxdV This user is from outside of this forum
      vrtxdV This user is from outside of this forum
      vrtxd
      wrote last edited by
      #2

      @LorenzoAncora #NotepadPP users might also seriously want to consider the option of switching to some other #TextEditor / #IDE they can trust such as #IntelliJ, #Neovim, #Eclipse or #VSCodium

      Lorenzo Ancora :verified:L 1 Reply Last reply
      0
      • Lorenzo Ancora :verified:L Lorenzo Ancora :verified:

        Notepad++'s update servers have been compromised by Chinese hackers and all users had been exposed to malware. The developer estimated the overall compromise period spanned from June through December 2, 2025.
        Users should update to version 8.9.1 (or superior) immediately.

        Source: https://notepad-plus-plus.org/news/hijacked-incident-info-update/

        #security #vulnerability #windows #text #editor #notepad #foss #freesoftware #software

        John RockefellerR This user is from outside of this forum
        John RockefellerR This user is from outside of this forum
        John Rockefeller
        wrote last edited by
        #3

        @LorenzoAncora As much as I loved Notepad++, as soon as one leaves windows it no longer is relevant. Kate, VSCodium, and others all fill the void that was lacking in the windows world.

        Lorenzo Ancora :verified:L 1 Reply Last reply
        0
        • Lorenzo Ancora :verified:L Lorenzo Ancora :verified:

          Notepad++'s update servers have been compromised by Chinese hackers and all users had been exposed to malware. The developer estimated the overall compromise period spanned from June through December 2, 2025.
          Users should update to version 8.9.1 (or superior) immediately.

          Source: https://notepad-plus-plus.org/news/hijacked-incident-info-update/

          #security #vulnerability #windows #text #editor #notepad #foss #freesoftware #software

          Otter SideO This user is from outside of this forum
          Otter SideO This user is from outside of this forum
          Otter Side
          wrote last edited by
          #4

          @LorenzoAncora As far as I understood, it only affected users who used the integrated upgrade function. If you only ever downloaded a new version directly from the site, there was no issue, nor did it affect anyone else except certain targeted groups. So saying all users were exposed is a slight exaggeration, though obviously anyone should still update it.

          Lorenzo Ancora :verified:L fedops πŸ’™πŸ’›F 2 Replies Last reply
          1
          0
          • Lorenzo Ancora :verified:L Lorenzo Ancora :verified:

            Notepad++'s update servers have been compromised by Chinese hackers and all users had been exposed to malware. The developer estimated the overall compromise period spanned from June through December 2, 2025.
            Users should update to version 8.9.1 (or superior) immediately.

            Source: https://notepad-plus-plus.org/news/hijacked-incident-info-update/

            #security #vulnerability #windows #text #editor #notepad #foss #freesoftware #software

            MicdanM This user is from outside of this forum
            MicdanM This user is from outside of this forum
            Micdan
            wrote last edited by
            #5

            @LorenzoAncora It's unfortunate... NPP is such a masterpiece of software. Back when I was a Windows 10 user, NPP ran very fast, it's wasn't from Microslop and has a decent UI and usability experience. As someone pointed out, now as a long-time Linux user I almost forgot the existence of this piece of software.

            1 Reply Last reply
            0
            • Lorenzo Ancora :verified:L Lorenzo Ancora :verified:

              Notepad++'s update servers have been compromised by Chinese hackers and all users had been exposed to malware. The developer estimated the overall compromise period spanned from June through December 2, 2025.
              Users should update to version 8.9.1 (or superior) immediately.

              Source: https://notepad-plus-plus.org/news/hijacked-incident-info-update/

              #security #vulnerability #windows #text #editor #notepad #foss #freesoftware #software

              TrimTab πŸ‡ΊπŸ‡¦T This user is from outside of this forum
              TrimTab πŸ‡ΊπŸ‡¦T This user is from outside of this forum
              TrimTab πŸ‡ΊπŸ‡¦
              wrote last edited by
              #6

              @LorenzoAncora
              Notepad++ is utterly irrelevant. Sorry to be blunt but windows software distribution is hopelessly broken.

              Linux software repos are also broken but there is much hope and variety of options. πŸ˜‰

              Lorenzo Ancora :verified:L 2 Replies Last reply
              0
              • Otter SideO Otter Side

                @LorenzoAncora As far as I understood, it only affected users who used the integrated upgrade function. If you only ever downloaded a new version directly from the site, there was no issue, nor did it affect anyone else except certain targeted groups. So saying all users were exposed is a slight exaggeration, though obviously anyone should still update it.

                Lorenzo Ancora :verified:L This user is from outside of this forum
                Lorenzo Ancora :verified:L This user is from outside of this forum
                Lorenzo Ancora :verified:
                wrote last edited by
                #7

                @OtterSide hi, unfortunately, Windows users can also use 3rd party software updaters and download sites, in which case they might've been affected too. In doubt, if you've downloaded or updated Notepad++ in 2025, you should upgrade ASAP. πŸ™‚ πŸ‘‹

                1 Reply Last reply
                0
                • TrimTab πŸ‡ΊπŸ‡¦T TrimTab πŸ‡ΊπŸ‡¦

                  @LorenzoAncora
                  Notepad++ is utterly irrelevant. Sorry to be blunt but windows software distribution is hopelessly broken.

                  Linux software repos are also broken but there is much hope and variety of options. πŸ˜‰

                  Lorenzo Ancora :verified:L This user is from outside of this forum
                  Lorenzo Ancora :verified:L This user is from outside of this forum
                  Lorenzo Ancora :verified:
                  wrote last edited by
                  #8

                  @TrimTab most Windows developers use this editor in place of the standard Notepad. It has a very large userbase and frequent updates, so I wouldn't describe it as irrelevant.

                  1 Reply Last reply
                  0
                  • John RockefellerR John Rockefeller

                    @LorenzoAncora As much as I loved Notepad++, as soon as one leaves windows it no longer is relevant. Kate, VSCodium, and others all fill the void that was lacking in the windows world.

                    Lorenzo Ancora :verified:L This user is from outside of this forum
                    Lorenzo Ancora :verified:L This user is from outside of this forum
                    Lorenzo Ancora :verified:
                    wrote last edited by
                    #9

                    @rocky1138 it depends on if the user can and wants to change OS. A single security issue on a replaceable application isn't a sufficient incentive. πŸ˜…

                    1 Reply Last reply
                    0
                    • vrtxdV vrtxd

                      @LorenzoAncora #NotepadPP users might also seriously want to consider the option of switching to some other #TextEditor / #IDE they can trust such as #IntelliJ, #Neovim, #Eclipse or #VSCodium

                      Lorenzo Ancora :verified:L This user is from outside of this forum
                      Lorenzo Ancora :verified:L This user is from outside of this forum
                      Lorenzo Ancora :verified:
                      wrote last edited by
                      #10

                      @vrtxd πŸ‘‰πŸΎ "[...] the attack involved infrastructure-level compromise [...] at the hosting provider level rather than through vulnerabilities in Notepad++ code itself. [...] Multiple independaent security researchers have assessed that the threat actor is likely a Chinese state-sponsored group".

                      So, the incident says nothing about the developer's reliability! πŸ˜‰

                      1 Reply Last reply
                      0
                      • TrimTab πŸ‡ΊπŸ‡¦T TrimTab πŸ‡ΊπŸ‡¦

                        @LorenzoAncora
                        Notepad++ is utterly irrelevant. Sorry to be blunt but windows software distribution is hopelessly broken.

                        Linux software repos are also broken but there is much hope and variety of options. πŸ˜‰

                        Lorenzo Ancora :verified:L This user is from outside of this forum
                        Lorenzo Ancora :verified:L This user is from outside of this forum
                        Lorenzo Ancora :verified:
                        wrote last edited by
                        #11

                        @TrimTab modern Linux repositories use digital signatures (like OpenPGP), so they are indeed safer to use.
                        I use both Debian and Fedora, and I can testimony the superior quality of the updates offered, in terms of timing and reliability. Indeed, trying new software is much easier this way! πŸ™‚

                        1 Reply Last reply
                        0
                        • Otter SideO Otter Side

                          @LorenzoAncora As far as I understood, it only affected users who used the integrated upgrade function. If you only ever downloaded a new version directly from the site, there was no issue, nor did it affect anyone else except certain targeted groups. So saying all users were exposed is a slight exaggeration, though obviously anyone should still update it.

                          fedops πŸ’™πŸ’›F This user is from outside of this forum
                          fedops πŸ’™πŸ’›F This user is from outside of this forum
                          fedops πŸ’™πŸ’›
                          wrote last edited by
                          #12

                          @OtterSide no it also concerns the integrated plugin downloader which is on by default and checks for updates regularly.

                          I also take exception to the dev's statement that the issue is fully resolved. Anyone could have had a boobytrapped update pushed to them, and that would potentially remain in place.
                          @LorenzoAncora

                          1 Reply Last reply
                          0
                          Reply
                          • Reply as topic
                          Log in to reply
                          • Oldest to Newest
                          • Newest to Oldest
                          • Most Votes


                          • Login

                          • Don't have an account? Register

                          • Login or register to search.
                          Powered by NodeBB Contributors
                          • First post
                            Last post
                          0
                          • Categories
                          • Recent
                          • Tags
                          • Popular
                          • World
                          • Users
                          • Groups