Notepad++ Update Mechanism Compromised by State-Sponsored Actors
The Notepad++ project confirmed an infrastructure-level compromise that began in June 2025, allowing malicious actors to intercept update traffic. Security experts assess the threat actor is likely a Chinese state-sponsored group targeting update verification flaws. The developer has since migrated hosting and hardened the update verification process in recent releases.