[{"data":1,"prerenderedAt":341},["ShallowReactive",2],{"story-87889-en":3},{"id":4,"slug":5,"slugs":5,"currentSlug":5,"title":6,"subtitle":7,"coverImagesSmall":8,"coverImages":9,"content":61,"questions":62,"relatedArticles":87,"body_color":339,"card_color":340},"87889",null,"Software Supply Chain Security Crisis | Critical Risk for E-Commerce Tech Infrastructure","- 6-month undetected breach (June-December 2025) exposes 10M+ Notepad++ users to state-sponsored malware; sellers using development tools face operational security risks and potential data compromise affecting customer trust and regulatory compliance",[],[10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40,41,42,43,44,45,46,47,48,49,50,51,52,53,54,55,56,57,58,59,60],"https://i.nextmedia.com.au/Utils/ImageResizer.ashx?n=https%3A%2F%2Fi.nextmedia.com.au%2FNews%2Fnotepadplusplus.jpg&h=420&w=748&c=0&s=0","https://static.wixstatic.com/media/eee5a8_4355f5444f1e4facb8fe5960655c91d7~mv2.png/v1/fill/w_634,h_634,al_c,q_90,usm_0.66_1.00_0.01,enc_avif,quality_auto/eee5a8_4355f5444f1e4facb8fe5960655c91d7~mv2.png","https://www.pcworld.com/wp-content/uploads/2026/02/Notepad.jpg?quality=50&strip=all&w=1024","https://assets.esecurityplanet.com/uploads/2026/01/notepad4ever.png","https://cdn.mos.cms.futurecdn.net/gxHtuAuPmvKcJnGgoBY3mk-1200-80.jpg","https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgzMhF4Q5Le-vJfovBcsvDHI-V4XTT-ZlCDveT5a3ibTH_5_USxu3yKbxTyY86_7HfbI0Lfcvl9zXpIWost8jehkxJ83EEkTpJNxySNjlntsGoxQtgJompW0iNQdpylvHAc5GkY-7L8X4iebatDHQUhMYFspiAKemuy_iPqtjz3NCwLXzIRC4xFOeiq6Ea5/s1700-e365/notepad.jpg","https://socradar.io/wp-content/uploads/2026/02/notepad-infrastructure-hijacked-in-state-linked-supply-chain-attack.jpg","https://sm.pcmag.com/pcmag_me/news/c/chinese-ha/chinese-hackers-hit-notepad-to-serve-malicious-update_g57c.jpg","https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEg27J3WVeHYgCt3bxC1-HiBNOSCX7AYLcBJumqmnJkDyDppQyXD3sZPLAgAl8zrzlTMXOLToEcjGV5gtaJnkcOqg-L73NGT7vArUtwgi8tBTnS4dTec36G3cnvQUB4NqLZWDAFEnO8JepdRYk58YvrSuFtAHGjkA0GxVu1CyZym1tiLbMBw81E4i1lApGs/s1600/G_Wagon%20NPM%20Package%20(12)%20(1).webp","https://i0.wp.com/securityaffairs.com/wp-content/uploads/2015/01/Notepad-logo.png?fit=241%2C232&ssl=1&resize=1280%2C720","https://www.findarticles.com/wp-content/uploads/2026/02/notepad___edited_1770059734.png","https://www.rappler.com/tachyon/2026/02/NOTEPAD-plus-plus-hacked.jpg","https://eu-images.contentstack.com/v3/assets/blt6d90778a997de1cd/blt7c6a1067f4bc53c3/6981019d195be4bafb6a8089/update_SuPatMaN_shutterstock.jpg?width=1280&auto=webp&quality=80&format=jpg&disable=upscale","https://betanews.com/wp-content/uploads/2026/02/Notepad.jpg","https://regmedia.co.uk/2023/06/22/shutterstock_please_explain.jpg","https://techcrunch.com/wp-content/uploads/2025/01/GettyImages-591881449.jpg","https://www.securityweek.com/wp-content/uploads/2025/12/Notepad.jpg","https://media.licdn.com/dms/image/v2/D4E12AQHI6uQfJHfADw/article-cover_image-shrink_720_1280/B4EZwfSaxUKMAI-/0/1770051454271?e=2147483647&v=beta&t=ey5-2pj46Xg0dZkFF-Vrd9f4y2Melo9TiwyCQ5LrM_Q","https://i.ntd.com/assets/uploads/2026/02/id1123587-0202-a1b.jpg-900x506.webp","https://www.filmogaz.com/uploads/images/202602/image_870x_6980bac74ed96.webp","https://regmedia.co.uk/2026/02/02/ugly_chrysalis.jpg","https://sm.pcmag.com/pcmag_uk/news/c/chinese-ha/chinese-hackers-hit-notepad-to-serve-malicious-update_3jub.jpg","https://www.techi.com/wp-content/uploads/2026/02/2026-02-02-Notepad-says-Chinese-government-hackers-hijacked-its-software-updates-for-months-techi@2x-600x300.webp","https://s.yimg.com/ny/api/res/1.2/_18G1CCfbhI2.IQmYTJnaw--/YXBwaWQ9aGlnaGxhbmRlcjt3PTEyNDI7aD04Mjc7Y2Y9d2VicA--/https://media.zenfs.com/en/techcrunch_finance_785/358ba221216244236b8e01070f2e7514","https://cyberscoop.com/wp-content/uploads/sites/3/2025/08/GettyImages-2204258854-1.jpg?w=1008","https://cdn.neowin.com/news/images/uploaded/2026/02/1770015244_notepadpp_story.webp","https://thumbor.evrimagaci.org/2G4-D3hDuzHERdnRnySeTqlBCc0=/1200x0/filters:quality(85):sharpen(0.5,0.5,true)/tpg%2Fsources%2F89c94b90-ebdb-4aab-88fc-227c1e3ccc57.jpeg","https://i1.wp.com/blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgqf3uz2GqXCHHNmuZNMCGy28FJfQHTEHrpJlLn6vbRI8-_JIlxvcyKPZkq8GN3auXnAet3dSo96Yhh43lBAJncLW1y7g-up6JesxljYrwSiJlmMTbekHlzn_B_gN_QYeQlDBdF058Nrqrrk3XsSmPcqTeXJWXtX2zl6Ea3rAv76q2x9tLeg-zGF_G9xKr4/s16000/Notepad++%20Hack.webp?w=1600&resize=1600,900&ssl=1","https://charming-card-d91ad3487b.media.strapiapp.com/file_edf7cb1e96.png","https://i0.wp.com/blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiq5MkJh80iPJLmWiMlgJOBa48_sjAoSeeduVsqz8reYbBsXm1mQCrmDtDoHIq9yV6tuZpABE9bHeZbq_paAV4lkqt5D6NHHAA3t7DVlmgucRMoQddtDZFo86GrLXcc54-DKtpwDV5y_rPBh6uVNvgKg3xC4CSgbsWeKsoyy9ieuuAPidG_KmxruIYNaVt6/s1600/Notepad++%20Users%20Targeted%20After%20State-Backed%20Attackers%20Hijack%20Update%20Servers%20%281%29%20%281%29.webp?w=1600&resize=1600,900&ssl=1","https://i3.wp.com/blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgMrYpQqH57rSJD0k_2ULCxbKn8Ej-41K9NBak10wZbEReYhA-5wjaWdWFZkvk5O1qyqiRB-MvVaTvuRXbFnlsp7UxEbWMWeLixxonEryVQnXfE_wFUzYccYjpTbTmO5fyRPcHxyg80lGRCJlbSSqxHJWzAlvFR8Fn-uLBTzeicvU97eRXQNYPexH7v0SHc/s16000/Notepad++%20Hacked.webp?w=1600&resize=1600,900&ssl=1","https://assets.infosecurity-magazine.com/webpage/og/efd48b72-1949-4796-87d0-2582184c6b7b.jpg","https://go.forrester.com/wp-content/uploads/2026/02/When-A-Hosting-Provider-Becomes-A-Hostile-Provider-The-Notepad-Compromise.jpg","https://platform.theverge.com/wp-content/uploads/sites/2/chorus/uploads/chorus_asset/file/23318435/akrales_220309_4977_0232.jpg?quality=90&strip=all&crop=0,0,100,100","https://images.gmanews.tv/webpics/2026/02/2026-02-02T201559Z_537857639_RC2GEW9IXAI3_RTRMADP_3_USA-CYBER-NOTEPAD-PLUS_2026_02_03_05_35_57.JPG","https://www.filmogaz.com/uploads/images/202602/image_870x_6980b2cfb1025.webp","https://img2.helpnetsecurity.com/posts2025/notepad_plus-650.webp","https://i.gzn.jp/img/2026/02/03/notepad-plus-plus-hijacked-state-sponsored-hackers/00_m.png","https://static0.xdaimages.com/wordpress/wp-content/uploads/wm/2025/08/notepad-4.png?w=1600&h=900&fit=crop","https://cms.therecord.media/uploads/format_webp/small_curated_lifestyle_unsplash_ZS_Yqfcx_Jp_4_photomosh_d5ea03c19f.jpg","https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEieIJHd4OQK00g8yDOJc5wJZ0EWtYGWBzwoLlIxw_YWELb5JYsmrE_jz2VDjexbfuzmGjZcvQ4iX6rAorcNC-7YgwG577NGRfGFuCzfGK9ZkMc7jiDLl9RCtRM45pUSLAOO-S-z1MDKEJjvXzxSZ90RQ4OmCPuYCHDEfBzgCADf21_XLxxBq9C7puPcFlL_/s1700-e365/notepad-hacked.jpg","https://hothardware.com/contentimages/NewsItem/69761/content/16x9_2133x1200_highres-notepad++-exploit.jpg","https://cyberinsider.com/wp-content/uploads/2026/02/Notepad-attributes-hijacking-attack-to-state-sponsored-hackers.png","https://www.bleepstatic.com/content/hl-images/2021/06/07/Notepad++.jpg","https://seczine.com/wp-content/uploads/2026/02/Notepad_Update_Hijack_6Month_Attack_Fixed_11.webp","https://heise.cloudimg.io/width/610/q85.png-lossy-85.webp-lossy-85.foil1/_www-heise-de_/imgs/18/5/0/2/0/5/1/1/2025-12-28-Notepad__-Achtung-Aufmacher-905171fbce248c81.png","https://sm.pcmag.com/pcmag_au/news/c/chinese-ha/chinese-hackers-hit-notepad-to-serve-malicious-update_z7mj.jpg","https://i-invdn-com.investing.com/trkd-images/LYNXMPEM1117Z_L.jpg","https://hackread.com/wp-content/uploads/2026/02/state-sponsored-hackers-notepad-updates-malware.jpg","https://i.pcmag.com/imagery/articles/03xDXJeyqHwjaGBrFBmD6Vy-1..v1770043846.jpg","https://img.mezha.ua/mezhaprod/images/doc/b/8/293893/b8bb86ec70bdf1316a6eac578ed5f819.jpeg?w=680&q=90","The **Notepad++ supply chain attack** represents a watershed moment for e-commerce infrastructure security, with direct implications for sellers relying on development tools, automation platforms, and third-party software integrations. Between June and December 2025, Chinese government-affiliated **Lotus Blossom hackers** hijacked Notepad++'s update mechanism—a widely-used text editor with tens of millions of downloads globally—to deliver the **Chrysalis backdoor malware** to targeted organizations. The breach remained undetected for approximately 6 months until security researcher Kevin Beaumont discovered the compromise in December 2025, with the vulnerability patched in version 8.8.9.\n\n**Direct E-Commerce Seller Impact**: While Notepad++ itself is a development tool, this incident exposes a critical vulnerability in how e-commerce sellers manage their technology stack. Sellers using Notepad++ for inventory management scripts, listing automation, API integrations, or backend development face potential compromise of sensitive business data—including customer information, payment processing credentials, and proprietary business logic. The attack specifically targeted government, telecom, aviation, and critical infrastructure sectors, but the methodology applies equally to e-commerce operations. Sellers in high-value categories (electronics, luxury goods, sensitive data handling) face elevated risk of espionage targeting competitive intelligence or customer databases.\n\n**Supply Chain Security Lessons**: The incident parallels the 2019-2020 **SolarWinds breach**, where Russian government hackers compromised software updates affecting Fortune 500 companies and multiple U.S. government agencies. This pattern demonstrates that **open-source and third-party software dependencies represent systemic risk** to e-commerce operations. The Lotus Blossom group's use of advanced techniques—including **Microsoft Warbird obfuscation**, DLL side-loading via BluetoothService.exe, and encrypted shellcode—indicates sophisticated tradecraft that could target e-commerce platforms, payment processors, and logistics integrations.\n\n**Operational Risk for Sellers**: E-commerce sellers managing complex technology stacks (Shopify apps, Amazon integration tools, 3PL software, accounting automation) face compounded risk. A single compromised development tool can expose entire business operations. The 6-month detection lag suggests many organizations remain unaware of compromise, creating a window where attackers gather intelligence on business operations, customer data, and supply chain relationships. For cross-border sellers, this risk extends to international data transfers, customs documentation systems, and multi-currency payment processing.",[63,66,69,72,75,78,81,84],{"title":64,"answer":65,"author":5,"avatar":5,"time":5},"Should sellers avoid open-source software due to supply chain attack risks?","No, but sellers should implement **rigorous vetting and monitoring processes** for all software dependencies, whether open-source or commercial. Open-source software often receives more security scrutiny than proprietary alternatives, but the Notepad++ breach demonstrates that popularity and widespread use don't guarantee security. The key is treating all software as potential risk vectors: maintain updated versions, monitor security advisories, verify update authenticity, and audit systems for compromise. Sellers should balance the benefits of open-source tools (cost, transparency, community support) against security risks through comprehensive dependency management rather than wholesale avoidance.",{"title":67,"answer":68,"author":5,"avatar":5,"time":5},"How does the Lotus Blossom group's targeting strategy affect e-commerce sellers?","Lotus Blossom (also known as Billbug, Bronze Elgin, Spring Dragon) demonstrates **sophisticated targeting of high-value organizations** with interests in East Asia, including government, telecom, aviation, and critical infrastructure sectors. While the group's primary focus appears to be government espionage, their advanced tradecraft—including Microsoft Warbird obfuscation, DLL side-loading, and encrypted shellcode—indicates capability to target e-commerce operations managing valuable intellectual property or customer data. Sellers with significant operations in Asia-Pacific regions or those handling sensitive business information should assume elevated risk. The group's documented use of public proof-of-concept code and commodity frameworks (Metasploit, Cobalt Strike) suggests they adapt tactics to target new sectors opportunistically.",{"title":70,"answer":71,"author":5,"avatar":5,"time":5},"How can sellers protect their e-commerce operations from supply chain attacks?","Implement a **software dependency management program** that includes: (1) Maintaining an inventory of all third-party software and integrations used in business operations; (2) Establishing automatic update policies with verification of update authenticity; (3) Monitoring security advisories for all software dependencies; (4) Conducting regular security audits of development tools and automation systems; (5) Implementing network segmentation to limit damage if a tool is compromised. The Notepad++ breach demonstrates that even widely-trusted open-source projects can be compromised, requiring sellers to treat all software as potential risk vectors requiring continuous monitoring.",{"title":73,"answer":74,"author":5,"avatar":5,"time":5},"What are the regulatory and compliance implications of the Notepad++ breach for sellers?","The breach creates compliance risks under **GDPR, CCPA, and other data protection regulations** if customer data was compromised through affected systems. Sellers must conduct breach assessments and potentially notify customers if personal data was exposed. The 6-month detection lag raises questions about sellers' security monitoring capabilities—regulators increasingly expect organizations to detect breaches within 30-60 days. Sellers should document their response to the Notepad++ vulnerability as evidence of reasonable security practices. Cross-border sellers face additional complexity: EU sellers must comply with GDPR breach notification requirements (72 hours), while US sellers must follow state-specific notification laws.",{"title":76,"answer":77,"author":5,"avatar":5,"time":5},"Which e-commerce seller segments face highest risk from this breach?","Sellers in high-value categories (electronics, luxury goods, sensitive data handling) and those managing complex technology stacks face elevated risk. The Lotus Blossom group specifically targeted government, telecom, aviation, and critical infrastructure sectors—indicating sophisticated targeting of organizations with valuable intelligence. Cross-border sellers managing international data transfers, customs documentation systems, and multi-currency payment processing face compounded risk. Sellers using development tools for inventory automation, API integrations, or backend systems should prioritize security audits and software updates immediately.",{"title":79,"answer":80,"author":5,"avatar":5,"time":5},"What immediate actions should sellers take following the Notepad++ breach disclosure?","Sellers should take three immediate steps: (1) Update Notepad++ to version 8.8.9 or later immediately if using the software; (2) Audit all systems that used Notepad++ between June-December 2025 for signs of compromise (unusual network traffic, unauthorized access, data exfiltration); (3) Review all third-party software and integrations for similar vulnerabilities and update policies. Additionally, sellers should verify update authenticity for all development tools and consider implementing software whitelisting policies. For sellers managing sensitive customer data, conduct a security assessment of your entire technology stack within 30 days.",{"title":82,"answer":83,"author":5,"avatar":5,"time":5},"How does the Notepad++ breach affect e-commerce sellers using development tools?","E-commerce sellers using Notepad++ for automation scripts, API integrations, or backend development face potential compromise of sensitive business data including customer information, payment credentials, and proprietary business logic. The breach occurred between June-December 2025 through hijacked software updates that delivered the Chrysalis backdoor malware. Sellers should immediately update to Notepad++ version 8.8.9 (released December 2025) and audit any systems that used compromised versions. The 6-month detection lag suggests many organizations remain unaware of potential compromise, making immediate action critical for protecting customer data and maintaining regulatory compliance.",{"title":85,"answer":86,"author":5,"avatar":5,"time":5},"What is the connection between the Notepad++ attack and the SolarWinds breach?","Both incidents represent **supply chain attacks** where hackers compromised widely-used software update mechanisms to deliver backdoors to thousands of organizations. The 2019-2020 SolarWinds breach affected Fortune 500 companies and multiple U.S. government agencies (Homeland Security, Commerce, Energy, Justice, State departments). The Notepad++ attack uses identical methodology: hijacking update traffic to redirect users to malicious servers. This pattern demonstrates that software dependencies represent systemic risk to e-commerce operations. Sellers should treat third-party software and integrations as potential attack vectors requiring continuous security monitoring.",[88,93,98,103,107,112,117,121,126,130,134,137,141,145,149,153,157,160,164,168,172,176,180,184,188,193,197,201,205,209,214,219,224,227,232,235,240,244,248,252,256,260,264,269,273,277,281,285,289,294,298,302,306,310,314,318,323,327,331,335],{"id":89,"title":90,"source":91,"logo":59,"time":92},342194,"Chinese Hackers Hit Notepad++ to Serve Malicious Update","https://www.pcmag.com/news/chinese-hackers-hit-notepad-plus-plus-to-serve-malicious-update","21H AGO",{"id":94,"title":95,"source":96,"logo":58,"time":97},342193,"Notepad++ Updates Delivered Malware After Hosting Provider Breach","https://hackread.com/notepad-updates-malware-hosting-breach/","20H AGO",{"id":99,"title":100,"source":101,"logo":15,"time":102},345023,"Notepad++ Hosting Breach Attributed to China-Linked Lotus Blossom Hacking Group","https://thehackernews.com/2026/02/notepad-hosting-breach-attributed-to.html","9H AGO",{"id":104,"title":105,"source":106,"logo":33,"time":97},342192,"Notepad++ says Chinese government hackers hijacked its software updates for months","https://www.yahoo.com/news/articles/notepad-says-chinese-government-hackers-180934523.html",{"id":108,"title":109,"source":110,"logo":38,"time":111},342191,"Chinese Hackers Hijack Notepad++ Updates for Months","https://www.techbuzz.ai/articles/chinese-hackers-hijack-notepad-updates-for-months","19H AGO",{"id":113,"title":114,"source":115,"logo":12,"time":116},342198,"Hijacked Notepad++ updater quietly targeted users for months","https://www.pcworld.com/article/3049744/hijacked-notepad-updater-quietly-targeted-users-for-months.html","22H AGO",{"id":118,"title":119,"source":120,"logo":5,"time":116},342197,"Notepad++ update system hijacked by sponsored hackers","https://rollingout.com/2026/02/02/notepad-update-system-hijacked/",{"id":122,"title":123,"source":124,"logo":52,"time":125},339384,"Notepad++ attributes hijacking attack to state-sponsored hackers","https://cyberinsider.com/notepad-attributes-hijacking-attack-to-state-sponsored-hackers/","1D AGO",{"id":127,"title":128,"source":129,"logo":5,"time":92},342196,"Notepad++ Updates Hijacked in State-Sponsored Attack, Developers Respond","https://windowsreport.com/notepad-updates-hijacked-in-state-sponsored-attack-developers-respond/",{"id":131,"title":132,"source":133,"logo":19,"time":125},339385,"Nation-state hack exploited hosting infrastructure to hijack Notepad++ updates","https://securityaffairs.com/187531/security/nation-state-hack-exploited-hosting-infrastructure-to-hijack-notepad-updates.html",{"id":135,"title":90,"source":136,"logo":17,"time":92},342195,"https://me.pcmag.com/en/security/35051/chinese-hackers-hit-notepad-to-serve-malicious-update",{"id":138,"title":139,"source":140,"logo":23,"time":125},339386,"Notepad++ reveals its updater was hijacked by state-sponsored hackers","https://betanews.com/article/notepad-reveals-its-updater-was-hijacked-by-state-sponsored-hackers/",{"id":142,"title":143,"source":144,"logo":18,"time":125},339387,"State-Sponsored Hackers Hijack Notepad++ Update Servers to Push Users to Malicious Sites","https://cyberpress.org/state-sponsored-hackers-hijack-notepad-update-servers-to-push-users-to-malicious-sites/",{"id":146,"title":147,"source":148,"logo":26,"time":125},339388,"Notepad++ Supply Chain Hack Conducted by China via Hosting Provider","https://www.securityweek.com/notepad-supply-chain-hack-conducted-by-china-via-hosting-provider/",{"id":150,"title":151,"source":152,"logo":50,"time":125},339389,"Notepad++ Official Update Mechanism Hijacked to Deliver Malware to Select Users","https://thehackernews.com/2026/02/notepad-official-update-mechanism.html",{"id":154,"title":155,"source":156,"logo":20,"time":111},342190,"Notepad++ Says Chinese Government Hackers Hijacked Updates","https://www.findarticles.com/notepad-says-chinese-government-hackers-hijacked-updates/",{"id":158,"title":105,"source":159,"logo":25,"time":97},342308,"https://techcrunch.com/2026/02/02/notepad-says-chinese-government-hackers-hijacked-its-software-updates-for-months/",{"id":161,"title":162,"source":163,"logo":49,"time":125},340881,"Notepad++ hijacked by suspected state-sponsored hackers","https://therecord.media/popular-text-editor-hijacked-by-suspected-state-sponsored-hackers",{"id":165,"title":166,"source":167,"logo":5,"time":125},340882,"Notepad++ breach bigger than previously thought: Chinese state-sponsored hackers likely involved","https://cybernews.com/security/state-sponsored-hackers-behind-notepad-plus-plus-hack/",{"id":169,"title":170,"source":171,"logo":10,"time":111},342189,"Popular text editor Notepad++ was hacked to drop malware","https://www.itnews.com.au/news/popular-text-editor-notepad-was-hacked-to-drop-malware-623335",{"id":173,"title":174,"source":175,"logo":45,"time":125},340880,"Notepad++ Secures Update Chain Post Targeted Breach","https://www.filmogaz.com/129900",{"id":177,"title":178,"source":179,"logo":60,"time":125},342188,"Notepad++ website hacked – Chinese hackers intercepted updates from June to December 2025","https://mezha.ua/en/news/notepad-hijacked-308195/",{"id":181,"title":182,"source":183,"logo":46,"time":125},340883,"How state-sponsored attackers hijacked Notepad++ updates","https://www.helpnetsecurity.com/2026/02/02/2025-notepad-supply-chain-compromise/",{"id":185,"title":186,"source":187,"logo":16,"time":125},342187,"Notepad++ Infrastructure Hijacked in State-Linked Supply Chain Attack","https://socradar.io/blog/notepad-infrastructure-hijacked/",{"id":189,"title":190,"source":191,"logo":29,"time":192},340878,"Nation-State Hackers Hijacked Notepad++ Updates via Hosting Infrastructure Exploit","https://www.filmogaz.com/129947","23H AGO",{"id":194,"title":195,"source":196,"logo":53,"time":192},340879,"Notepad++ update feature hijacked by Chinese state hackers for months","https://www.bleepingcomputer.com/news/security/notepad-plus-plus-update-feature-hijacked-by-chinese-state-hackers-for-months/",{"id":198,"title":199,"source":200,"logo":39,"time":125},340876,"Notepad++ Users Targeted After State-Backed Attackers Hijack Update Servers","https://gbhackers.com/notepad-users-targeted/",{"id":202,"title":203,"source":204,"logo":41,"time":192},340877,"Notepad++ Update Hijacking Linked to Hosting Provider Compromise","https://www.infosecurity-magazine.com/news/notepad-update-hijacked/",{"id":206,"title":207,"source":208,"logo":11,"time":125},340875,"Notepad++ Update Mechanism Hijacked: Supply Chain Attack Delivers Malware to Targeted Users","https://www.rescana.com/post/notepad-update-mechanism-hijacked-supply-chain-attack-delivers-malware-to-targeted-users",{"id":210,"title":211,"source":212,"logo":5,"time":213},343261,"Lotus Blossom's Silent Infiltration: Targeted Cyber Attack on Notepad++","https://www.devdiscourse.com/article/technology/3791098-lotus-blossoms-silent-infiltration-targeted-cyber-attack-on-notepad","18H AGO",{"id":215,"title":216,"source":217,"logo":43,"time":218},343260,"Notepad++ updates got hijacked for months and could have spied for China","https://www.theverge.com/tech/872462/notepad-plus-plus-server-hijacking","17H AGO",{"id":220,"title":221,"source":222,"logo":54,"time":223},344072,"Notepad++ Update Hijack: 6‑Month Attack Fixed","https://seczine.com/cyber-security/2026/02/notepad-update-hijack-6month-attack-fixed/","14H AGO",{"id":225,"title":90,"source":226,"logo":56,"time":92},343264,"https://au.pcmag.com/security/115678/chinese-hackers-hit-notepad-to-serve-malicious-update",{"id":228,"title":229,"source":230,"logo":37,"time":231},344073,"Notepad++ Hack Detailed Along With the IoCs and Custom Malware Used","https://cybersecuritynews.com/notepad-hack/","12H AGO",{"id":233,"title":90,"source":234,"logo":31,"time":92},343263,"https://uk.pcmag.com/security/162922/chinese-hackers-hit-notepad-to-serve-malicious-update",{"id":236,"title":237,"source":238,"logo":42,"time":239},344074,"When A Hosting Provider Becomes A Hostile Provider: The Notepad++ Compromise","https://www.forrester.com/blogs/when-a-hosting-provider-becomes-a-hostile-provider-the-notepad-compromise/","16H AGO",{"id":241,"title":242,"source":243,"logo":51,"time":213},343262,"Notepad++ Confirms Hackers Hijacked Update Infrastructure To Push Malware","https://hothardware.com/news/notepad-confirms-hackers-hijacked-update-infrastructure-to-push-malware",{"id":245,"title":246,"source":247,"logo":5,"time":218},344075,"Notepad++ Update Hijacked by Cyberespionage Group, Sparks Cybersecurity Alert","https://www.devdiscourse.com/article/technology/3791119-notepad-update-hijacked-by-cyberespionage-group-sparks-cybersecurity-alert",{"id":249,"title":250,"source":251,"logo":55,"time":125},344946,"Notepad++: Updater takeover by state actors","https://www.heise.de/en/news/Notepad-Updater-takeover-by-state-actors-11162248.html",{"id":253,"title":254,"source":255,"logo":44,"time":239},344947,"Popular open-source coding application targeted in Chinese-linked supply-chain attack","https://www.gmanetwork.com/news/scitech/technology/975131/popular-open-source-coding-application-targeted-in-chinese-linked-supply-chain-attack/story/",{"id":257,"title":258,"source":259,"logo":57,"time":218},344948,"Popular open-source coding application targeted in Chinese-linked supply-chain attack By Reuters","https://www.investing.com/news/economy-news/popular-opensource-coding-application-targeted-in-chineselinked-supplychain-attack-4479841",{"id":261,"title":262,"source":263,"logo":48,"time":218},343258,"Notepad++ has allegedly been spying on \"targeted users\" after a malicious update got in","https://www.xda-developers.com/notepad-plus-plus-spying-targeted-users-malicious-update-got-in/",{"id":265,"title":266,"source":267,"logo":5,"time":268},344942,"Notepad++ Supply Chain Hack Exposed, Researchers Publish IoCs and Custom Malware Analysis","https://cyberpress.org/notepad-supply-chain-hack-exposed/","7H AGO",{"id":270,"title":271,"source":272,"logo":32,"time":239},343257,"Notepad++ Breach Turns a Trusted Tool Into a Cyber Weapon","https://www.techi.com/notepad-plus-plus-breach-supply-chain-cyber-attack/",{"id":274,"title":275,"source":276,"logo":28,"time":102},344943,"Notepad++ Says Chinese Regime Hackers Targeted Software Updates","https://www.ntd.com/notepad-says-chinese-regime-hackers-targeted-software-updates_1123550.html",{"id":278,"title":279,"source":280,"logo":36,"time":239},343256,"Notepad++ Updates Hijacked By Suspected Chinese Hackers","https://evrimagaci.org/gpt/notepad-updates-hijacked-by-suspected-chinese-hackers-526543",{"id":282,"title":283,"source":284,"logo":21,"time":102},344944,"Open-source coding app Notepad++ targeted in Chinese-linked supply-chain attack","https://www.rappler.com/technology/notepad-plus-plus-targeted-chinese-linked-attack-february-2026/",{"id":286,"title":287,"source":288,"logo":22,"time":239},343255,"Chinese Hackers Hijack Notepad++ Updates for 6 Months","https://www.darkreading.com/application-security/chinese-hackers-hijack-notepad-updates-6-months",{"id":290,"title":291,"source":292,"logo":47,"time":293},344945,"Notepad++ was hijacked by state-sponsored hackers to distribute malware installers","https://gigazine.net/gsc_news/en/20260203-notepad-plus-plus-hijacked-state-sponsored-hackers/","10H AGO",{"id":295,"title":296,"source":297,"logo":24,"time":125},340940,"Notepad++ patches update chain after targeted compromise","https://www.theregister.com/2026/02/02/notepad_plusplus_intrusion/",{"id":299,"title":300,"source":301,"logo":34,"time":218},343259,"China-based espionage group compromised Notepad++ for six months","https://cyberscoop.com/china-espionage-group-lotus-blossom-attacks-notepad/",{"id":303,"title":304,"source":305,"logo":35,"time":125},339390,"How to protect your system following the Notepad++ update server compromise","https://www.neowin.net/news/how-to-protect-your-system-following-the-notepad-update-server-compromise/",{"id":307,"title":308,"source":309,"logo":40,"time":125},339391,"State-Sponsored Actors Hijacked Notepad++ Update to Redirect Users to Malicious Servers","https://cybersecuritynews.com/notepad-hijacked/",{"id":311,"title":312,"source":313,"logo":5,"time":125},339392,"Notepad++ hijacked by state-sponsored actors","https://news.ycombinator.com/item?id=46851548",{"id":315,"title":316,"source":317,"logo":27,"time":239},343254,"WARNING: Notepad++ Hijacked By China State-Sponsored Threat Actors","https://www.linkedin.com/pulse/warning-notepad-hijacked-china-state-sponsored-cb5ee",{"id":319,"title":320,"source":321,"logo":13,"time":322},343253,"Notepad++ Update Servers Hijacked in Targeted Supply Chain Attack","https://www.esecurityplanet.com/threats/notepad-update-servers-hijacked-in-targeted-supply-chain-attack/","15H AGO",{"id":324,"title":325,"source":326,"logo":30,"time":322},343252,"Notepad++ hijacking linked to Chinese Lotus Blossom crew","https://www.theregister.com/2026/02/02/notepad_hijacking_lotus_blossom/",{"id":328,"title":329,"source":330,"logo":5,"time":223},343251,"Notepad++ Breach Exposes Fragility of Open-Source Update Chains","https://washingtonnewsday.com/technology/notepad-breach-exposes-fragility-of-open-source-update-chains/",{"id":332,"title":333,"source":334,"logo":14,"time":116},342199,"Notepad++ was hijacked by bad actors in 2025. Here's what you need to know.","https://www.windowscentral.com/software-apps/notepad-plus-plus-hijacked",{"id":336,"title":337,"source":338,"logo":5,"time":213},343369,"Notepad++ updater was compromised for 6 months in supply-chain attack","https://arstechnica.com/security/2026/02/notepad-updater-was-compromised-for-6-months-in-supply-chain-attack/","#18650bff","#18650b4d",1770147062406]