A command injection flaw in the Windows Notepad App now gives remote attackers a path to execute code over a network, turning ...
Notepad++ 8.9.2 fixes update hijack exploited to deliver malware, patches RCE flaw, and hardens WinGUp security.
Infrastructure delivering updates for Notepad++—a widely used text editor for Windows—was compromised for six months by ...
Users could be tricked into running arbitrary code, but the issue was patched last week.
Notepad++ reported that its built-in auto-update feature had been hijacked by Chinese state-sponsored hackers from June to September of 2025, and the credentials gathered by the bas actors enabled ...