Close Menu
Technology Mag

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot
    DJI will pay K to the man who accidentally hacked 7,000 Romo robovacs

    DJI will pay $30K to the man who accidentally hacked 7,000 Romo robovacs

    March 6, 2026
    Grammarly is using our identities without permission

    Grammarly is using our identities without permission

    March 6, 2026
    Valve’s Steam Machine may not launch this year

    Valve’s Steam Machine may not launch this year

    March 6, 2026
    Facebook X (Twitter) Instagram
    Subscribe
    Technology Mag
    Facebook X (Twitter) Instagram YouTube
    • Home
    • News
    • Business
    • Games
    • Gear
    • Reviews
    • Science
    • Security
    • Trending
    • Press Release
    Technology Mag
    Home » Notepad++ updates got hijacked for months and could have spied for China
    News

    Notepad++ updates got hijacked for months and could have spied for China

    News RoomBy News RoomFebruary 2, 20262 Mins Read
    Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Email
    Notepad++ updates got hijacked for months and could have spied for China

    Users of the text and code editor Notepad++ may have unknowingly downloaded a malicious update for the app after its shared hosting servers were hijacked last year. On Monday, the app’s developer, Don Ho, posted an update on the attack with more details, including that the hackers were “likely a Chinese state-sponsored group” and that the app’s servers were vulnerable for roughly six months from June through December 2nd, 2025.

    The post explains that the hijacking occurred on the app’s unnamed, now-former hosting provider’s end, stating that “Traffic from certain targeted users was selectively redirected to attacker-controlled served malicious update manifests.” When victims were redirected, their app update could be replaced with a malicious executable that, according to independent cybersecurity expert Kevin Beaumont, may have given the hackers remote access to a victim’s keyboard.

    Don Ho’s post also adds that the attack involved “highly selective targeting” in terms of the victims it redirected away from the legitimate Notepad++ website. Kevin Beaumont noted that the victims he spoke with “are [organizations] with interests in East Asia.” So, while this is a serious security vulnerability, it’s possible that the hackers were busy watching specific people instead of just anyone.

    The developer did not specify when they became aware of the attack, but said that “all attacker access was definitively terminated” by December 2nd. The Notepad++ updater has been updated itself with stronger security measures to check for tampering and verify that updates are legitimate.

    Notepad++ users should make sure they are on at least version 8.8.9, which addressed the vulnerabilities from the hijacking attack, and they should probably download that version directly from the Notepad++ website. Additionally, Kevin Beaumont suggested users double-check that they’re not using an unofficial version of Notepad++, keep a close eye on activity from “gup.exe,” the app’s updater, and check for a suspicious “update.exe” or “AutoUpdater.exe” file in their TEMP folder.

    Notably, Don Ho, the developer of Notepad++, criticized the Chinese government in a 2019 app update. He called that version the “Free Uyghur” edition, and told The Verge at the time that his website had faced DDoS attacks in response.

    Share. Facebook Twitter Pinterest LinkedIn WhatsApp Reddit Email
    Previous ArticleAmazon’s desk-friendly Echo Show 8 is down to its lowest price ever
    Next Article Will Elon Musk’s emails with Jeffrey Epstein derail his very important year?

    Related Posts

    DJI will pay K to the man who accidentally hacked 7,000 Romo robovacs

    DJI will pay $30K to the man who accidentally hacked 7,000 Romo robovacs

    March 6, 2026
    Grammarly is using our identities without permission

    Grammarly is using our identities without permission

    March 6, 2026
    Valve’s Steam Machine may not launch this year

    Valve’s Steam Machine may not launch this year

    March 6, 2026
    The Trump administration says it can’t process tariff refunds because of computer problems

    The Trump administration says it can’t process tariff refunds because of computer problems

    March 6, 2026
    You can already save up to  on the new M4 iPad Air

    You can already save up to $50 on the new M4 iPad Air

    March 6, 2026
    The Trump phone was a no-show at the world’s biggest mobile show

    The Trump phone was a no-show at the world’s biggest mobile show

    March 6, 2026
    Our Picks
    Grammarly is using our identities without permission

    Grammarly is using our identities without permission

    March 6, 2026
    Valve’s Steam Machine may not launch this year

    Valve’s Steam Machine may not launch this year

    March 6, 2026
    The Trump administration says it can’t process tariff refunds because of computer problems

    The Trump administration says it can’t process tariff refunds because of computer problems

    March 6, 2026
    You can already save up to  on the new M4 iPad Air

    You can already save up to $50 on the new M4 iPad Air

    March 6, 2026
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo
    Don't Miss
    The Trump phone was a no-show at the world’s biggest mobile show News

    The Trump phone was a no-show at the world’s biggest mobile show

    By News RoomMarch 6, 2026

    This week Barcelona was taken over by the tech industry as Mobile World Congress descended…

    This phone starts fires on purpose

    This phone starts fires on purpose

    March 6, 2026
    Meet your new phone away from phone

    Meet your new phone away from phone

    March 6, 2026
    Lawmakers just advanced online safety laws that require age verification at the app store

    Lawmakers just advanced online safety laws that require age verification at the app store

    March 5, 2026
    Facebook X (Twitter) Instagram Pinterest
    • Privacy Policy
    • Terms of use
    • Advertise
    • Contact
    © 2026 Technology Mag. All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.