State-sponsored threat actors compromised the popular code editor's hosting provider to redirect targeted users to malicious ...
The attacks came from a third-party and not from the Notepad++ team.
A Chinese-linked cyberespionage group named Lotus Blossom hijacked the update process of Notepad++ to target specific users. Gaining access in June 2025, they maintained control until December that ...