Mastodon Skip to content
  • Home
  • Aktuell
  • Tags
  • Über dieses Forum
Einklappen
Grafik mit zwei überlappenden Sprechblasen, eine grün und eine lila.
Abspeckgeflüster – Forum für Menschen mit Gewicht(ung)

Kostenlos. Werbefrei. Menschlich. Dein Abnehmforum.

  1. Home
  2. Uncategorized
  3. Notepad++'s update servers have been compromised by Chinese hackers and all users had been exposed to malware.

Notepad++'s update servers have been compromised by Chinese hackers and all users had been exposed to malware.

Geplant Angeheftet Gesperrt Verschoben Uncategorized
securityvulnerabilitywindowstexteditornotepadfossfreesoftwaresoftware
14 Beiträge 7 Kommentatoren 4 Aufrufe
  • Älteste zuerst
  • Neuste zuerst
  • Meiste Stimmen
Antworten
  • In einem neuen Thema antworten
Anmelden zum Antworten
Dieses Thema wurde gelöscht. Nur Nutzer mit entsprechenden Rechten können es sehen.
  • lorenzoancora@ieji.deL lorenzoancora@ieji.de

    Notepad++'s update servers have been compromised by Chinese hackers and all users had been exposed to malware. The developer estimated the overall compromise period spanned from June through December 2, 2025.
    Users should update to version 8.9.1 (or superior) immediately.

    Source: https://notepad-plus-plus.org/news/hijacked-incident-info-update/

    #security #vulnerability #windows #text #editor #notepad #foss #freesoftware #software

    vrtxd@piipitin.fiV This user is from outside of this forum
    vrtxd@piipitin.fiV This user is from outside of this forum
    vrtxd@piipitin.fi
    schrieb zuletzt editiert von
    #2

    @LorenzoAncora #NotepadPP users might also seriously want to consider the option of switching to some other #TextEditor / #IDE they can trust such as #IntelliJ, #Neovim, #Eclipse or #VSCodium
    (edit: added image)

    lorenzoancora@ieji.deL 1 Antwort Letzte Antwort
    0
    • lorenzoancora@ieji.deL lorenzoancora@ieji.de

      Notepad++'s update servers have been compromised by Chinese hackers and all users had been exposed to malware. The developer estimated the overall compromise period spanned from June through December 2, 2025.
      Users should update to version 8.9.1 (or superior) immediately.

      Source: https://notepad-plus-plus.org/news/hijacked-incident-info-update/

      #security #vulnerability #windows #text #editor #notepad #foss #freesoftware #software

      rocky1138@dosgame.clubR This user is from outside of this forum
      rocky1138@dosgame.clubR This user is from outside of this forum
      rocky1138@dosgame.club
      schrieb zuletzt editiert von
      #3

      @LorenzoAncora As much as I loved Notepad++, as soon as one leaves windows it no longer is relevant. Kate, VSCodium, and others all fill the void that was lacking in the windows world.

      lorenzoancora@ieji.deL 1 Antwort Letzte Antwort
      0
      • lorenzoancora@ieji.deL lorenzoancora@ieji.de

        Notepad++'s update servers have been compromised by Chinese hackers and all users had been exposed to malware. The developer estimated the overall compromise period spanned from June through December 2, 2025.
        Users should update to version 8.9.1 (or superior) immediately.

        Source: https://notepad-plus-plus.org/news/hijacked-incident-info-update/

        #security #vulnerability #windows #text #editor #notepad #foss #freesoftware #software

        otterside@mementomori.socialO This user is from outside of this forum
        otterside@mementomori.socialO This user is from outside of this forum
        otterside@mementomori.social
        schrieb zuletzt editiert von
        #4

        @LorenzoAncora As far as I understood, it only affected users who used the integrated upgrade function. If you only ever downloaded a new version directly from the site, there was no issue, nor did it affect anyone else except certain targeted groups. So saying all users were exposed is a slight exaggeration, though obviously anyone should still update it.

        lorenzoancora@ieji.deL fedops@fosstodon.orgF 2 Antworten Letzte Antwort
        0
        • lorenzoancora@ieji.deL lorenzoancora@ieji.de

          Notepad++'s update servers have been compromised by Chinese hackers and all users had been exposed to malware. The developer estimated the overall compromise period spanned from June through December 2, 2025.
          Users should update to version 8.9.1 (or superior) immediately.

          Source: https://notepad-plus-plus.org/news/hijacked-incident-info-update/

          #security #vulnerability #windows #text #editor #notepad #foss #freesoftware #software

          micdan@mstdn.partyM This user is from outside of this forum
          micdan@mstdn.partyM This user is from outside of this forum
          micdan@mstdn.party
          schrieb zuletzt editiert von
          #5

          @LorenzoAncora It's unfortunate... NPP is such a masterpiece of software. Back when I was a Windows 10 user, NPP ran very fast, it's wasn't from Microslop and has a decent UI and usability experience. As someone pointed out, now as a long-time Linux user I almost forgot the existence of this piece of software.

          1 Antwort Letzte Antwort
          0
          • lorenzoancora@ieji.deL lorenzoancora@ieji.de

            Notepad++'s update servers have been compromised by Chinese hackers and all users had been exposed to malware. The developer estimated the overall compromise period spanned from June through December 2, 2025.
            Users should update to version 8.9.1 (or superior) immediately.

            Source: https://notepad-plus-plus.org/news/hijacked-incident-info-update/

            #security #vulnerability #windows #text #editor #notepad #foss #freesoftware #software

            trimtab@mastodon.socialT This user is from outside of this forum
            trimtab@mastodon.socialT This user is from outside of this forum
            trimtab@mastodon.social
            schrieb zuletzt editiert von
            #6

            @LorenzoAncora
            Notepad++ is utterly irrelevant. Sorry to be blunt but windows software distribution is hopelessly broken.

            Linux software repos are also broken but there is much hope and variety of options. 😉

            lorenzoancora@ieji.deL 2 Antworten Letzte Antwort
            0
            • otterside@mementomori.socialO otterside@mementomori.social

              @LorenzoAncora As far as I understood, it only affected users who used the integrated upgrade function. If you only ever downloaded a new version directly from the site, there was no issue, nor did it affect anyone else except certain targeted groups. So saying all users were exposed is a slight exaggeration, though obviously anyone should still update it.

              lorenzoancora@ieji.deL This user is from outside of this forum
              lorenzoancora@ieji.deL This user is from outside of this forum
              lorenzoancora@ieji.de
              schrieb zuletzt editiert von
              #7

              @OtterSide hi, unfortunately, Windows users can also use 3rd party software updaters and download sites, in which case they might've been affected too. In doubt, if you've downloaded or updated Notepad++ in 2025, you should upgrade ASAP. 🙂 👋

              1 Antwort Letzte Antwort
              0
              • trimtab@mastodon.socialT trimtab@mastodon.social

                @LorenzoAncora
                Notepad++ is utterly irrelevant. Sorry to be blunt but windows software distribution is hopelessly broken.

                Linux software repos are also broken but there is much hope and variety of options. 😉

                lorenzoancora@ieji.deL This user is from outside of this forum
                lorenzoancora@ieji.deL This user is from outside of this forum
                lorenzoancora@ieji.de
                schrieb zuletzt editiert von
                #8

                @TrimTab most Windows developers use this editor in place of the standard Notepad. It has a very large userbase and frequent updates, so I wouldn't describe it as irrelevant.

                1 Antwort Letzte Antwort
                0
                • rocky1138@dosgame.clubR rocky1138@dosgame.club

                  @LorenzoAncora As much as I loved Notepad++, as soon as one leaves windows it no longer is relevant. Kate, VSCodium, and others all fill the void that was lacking in the windows world.

                  lorenzoancora@ieji.deL This user is from outside of this forum
                  lorenzoancora@ieji.deL This user is from outside of this forum
                  lorenzoancora@ieji.de
                  schrieb zuletzt editiert von
                  #9

                  @rocky1138 it depends on if the user can and wants to change OS. A single security issue on a replaceable application isn't a sufficient incentive. 😅

                  1 Antwort Letzte Antwort
                  0
                  • vrtxd@piipitin.fiV vrtxd@piipitin.fi

                    @LorenzoAncora #NotepadPP users might also seriously want to consider the option of switching to some other #TextEditor / #IDE they can trust such as #IntelliJ, #Neovim, #Eclipse or #VSCodium
                    (edit: added image)

                    lorenzoancora@ieji.deL This user is from outside of this forum
                    lorenzoancora@ieji.deL This user is from outside of this forum
                    lorenzoancora@ieji.de
                    schrieb zuletzt editiert von
                    #10

                    @vrtxd 👉🏾 "[...] the attack involved infrastructure-level compromise [...] at the hosting provider level rather than through vulnerabilities in Notepad++ code itself. [...] Multiple independaent security researchers have assessed that the threat actor is likely a Chinese state-sponsored group".

                    So, the incident says nothing about the developer's reliability! 😉

                    vrtxd@piipitin.fiV 1 Antwort Letzte Antwort
                    0
                    • trimtab@mastodon.socialT trimtab@mastodon.social

                      @LorenzoAncora
                      Notepad++ is utterly irrelevant. Sorry to be blunt but windows software distribution is hopelessly broken.

                      Linux software repos are also broken but there is much hope and variety of options. 😉

                      lorenzoancora@ieji.deL This user is from outside of this forum
                      lorenzoancora@ieji.deL This user is from outside of this forum
                      lorenzoancora@ieji.de
                      schrieb zuletzt editiert von
                      #11

                      @TrimTab modern Linux repositories use digital signatures (like OpenPGP), so they are indeed safer to use.
                      I use both Debian and Fedora, and I can testimony the superior quality of the updates offered, in terms of timing and reliability. Indeed, trying new software is much easier this way! 🙂

                      1 Antwort Letzte Antwort
                      0
                      • otterside@mementomori.socialO otterside@mementomori.social

                        @LorenzoAncora As far as I understood, it only affected users who used the integrated upgrade function. If you only ever downloaded a new version directly from the site, there was no issue, nor did it affect anyone else except certain targeted groups. So saying all users were exposed is a slight exaggeration, though obviously anyone should still update it.

                        fedops@fosstodon.orgF This user is from outside of this forum
                        fedops@fosstodon.orgF This user is from outside of this forum
                        fedops@fosstodon.org
                        schrieb zuletzt editiert von
                        #12

                        @OtterSide no it also concerns the integrated plugin downloader which is on by default and checks for updates regularly.

                        I also take exception to the dev's statement that the issue is fully resolved. Anyone could have had a boobytrapped update pushed to them, and that would potentially remain in place.
                        @LorenzoAncora

                        otterside@mementomori.socialO 1 Antwort Letzte Antwort
                        0
                        • lorenzoancora@ieji.deL lorenzoancora@ieji.de

                          @vrtxd 👉🏾 "[...] the attack involved infrastructure-level compromise [...] at the hosting provider level rather than through vulnerabilities in Notepad++ code itself. [...] Multiple independaent security researchers have assessed that the threat actor is likely a Chinese state-sponsored group".

                          So, the incident says nothing about the developer's reliability! 😉

                          vrtxd@piipitin.fiV This user is from outside of this forum
                          vrtxd@piipitin.fiV This user is from outside of this forum
                          vrtxd@piipitin.fi
                          schrieb zuletzt editiert von
                          #13

                          @LorenzoAncora "The attackers specifically targeted Notepad++ domain with the goal of exploiting insufficient update verification controls that existed in older versions of Notepad++."

                          Yes. It was a solo developer and a hosting provider against superpower-sponsored attackers, it seems. They did their best choosing a reliable hosting provider and making the software secure, and users might still lose trust. I don't blame anyone, I'm just stating options for migration.

                          1 Antwort Letzte Antwort
                          0
                          • fedops@fosstodon.orgF fedops@fosstodon.org

                            @OtterSide no it also concerns the integrated plugin downloader which is on by default and checks for updates regularly.

                            I also take exception to the dev's statement that the issue is fully resolved. Anyone could have had a boobytrapped update pushed to them, and that would potentially remain in place.
                            @LorenzoAncora

                            otterside@mementomori.socialO This user is from outside of this forum
                            otterside@mementomori.socialO This user is from outside of this forum
                            otterside@mementomori.social
                            schrieb zuletzt editiert von
                            #14

                            @fedops It seems my policy of not installing the updater at all paid off then - also the copy installed by the IT department at work didn't have the updater installed either, so it seems both were more or less safe. Both have been updated since, regardless.

                            1 Antwort Letzte Antwort
                            0
                            • necrosis@chaos.socialN necrosis@chaos.social shared this topic
                            Antworten
                            • In einem neuen Thema antworten
                            Anmelden zum Antworten
                            • Älteste zuerst
                            • Neuste zuerst
                            • Meiste Stimmen



                            Copyright (c) 2025 abSpecktrum (@abspecklog@fedimonster.de)

                            Erstellt mit Schlaflosigkeit, Kaffee, Brokkoli & ♥

                            Impressum | Datenschutzerklärung | Nutzungsbedingungen

                            • Anmelden

                            • Du hast noch kein Konto? Registrieren

                            • Anmelden oder registrieren, um zu suchen
                            • Erster Beitrag
                              Letzter Beitrag
                            0
                            • Home
                            • Aktuell
                            • Tags
                            • Über dieses Forum