Notepad++ updater was compromised for 6 months in supply-chain attack
Suspected China-state hackers used update infrastructure to deliver backdoored version.
https://arstechnica.com/security/2026/02/notepad-updater-was-compromised-for-6-months-in-supply-chain-attack/?utm_brand=arstechnica&utm_social-type=owned&utm_source=mastodon&utm_medium=social
If you have a fediverse account, you can quote this note from your own instance. Search https://mastodon.social/users/arstechnica/statuses/116002938368040085 on your instance and quote it. (Note that quoting is not supported in Mastodon.)
