Close Menu
TechTost
  • AI
  • Apps
  • Crypto
  • Fintech
  • Hardware
  • Media & Entertainment
  • Security
  • Startups
  • Transportation
  • Venture
  • Recommended Essentials
What's Hot

Netflix delays Greta Gerwig’s ‘Narnia’ for big theatrical push to 2027

Uber wants to turn its millions of drivers into a sensor network for self-driving companies

Meta buys robotics startup to boost humanoid AI ambitions

Facebook X (Twitter) Instagram
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer
Facebook X (Twitter) Instagram
TechTost
Subscribe Now
  • AI

    Meta buys robotics startup to boost humanoid AI ambitions

    2 May 2026

    Replit’s Amjad Masad on the Cursor deal, fighting Apple and why he’d rather not sell

    2 May 2026

    After rejecting Anthropic for restricting Mythos, OpenAI is also restricting access to Cyber

    1 May 2026

    Sources: Anthropic Potential $900B+ Valuation Round Could Happen Within 2 Weeks

    1 May 2026

    Meta says its business AI now facilitates 10 million conversations per week

    30 April 2026
  • Apps

    Instagram is cracking down on content aggregators

    2 May 2026

    X announces a reengineered AI-powered ad platform

    2 May 2026

    TikTok’s new ‘Campus Hub’ features group chats and college streams

    1 May 2026

    ChatGPT Images 2.0 is a hit in India, but not a big winner elsewhere, yet

    1 May 2026

    Spotify introduces verified artist badges to distinguish humans from artificial intelligence

    30 April 2026
  • Crypto

    British cryptographer Adam Back denies NYT report that he is Bitcoin creator Satoshi Nakamoto

    9 April 2026

    Hackers stole over $2.7 billion in crypto in 2025, data shows

    23 December 2025

    New report examines how David Sachs may benefit from Trump administration role

    1 December 2025

    Why Benchmark Made a Rare Crypto Bet on Trading App Fomo, with $17M Series A

    6 November 2025

    Solana co-founder Anatoly Yakovenko is a big fan of agentic coding

    30 October 2025
  • Fintech

    Stripe introduces Link, a digital wallet that autonomous AI agents can also use

    1 May 2026

    Y Combinator alum Skio sells for $105 million in cash, raised only $8 million, founder says

    1 May 2026

    Amazon, Meta join the fight to end Google Pay and PhonePe’s dominance in India

    30 April 2026

    Steve Ballmer slams founder he backed, who pleaded guilty to fraud: ‘I was cheated and I feel stupid’

    25 April 2026

    Salmon raises $100 million in equity and debt to bring digital credit to unbanked Filipinos

    24 April 2026
  • Hardware

    Apple surprised by AI-driven demand for Macs

    1 May 2026

    As Tim Cook departs, Apple hits record sales — but chip shortage looms

    1 May 2026

    More Gemini features are coming to Google TV

    30 April 2026

    OpenAI could be building a phone with AI agents that replace apps

    28 April 2026

    SpeakOn’s dictation device is a good idea marred by platform limitations

    27 April 2026
  • Media & Entertainment

    Netflix delays Greta Gerwig’s ‘Narnia’ for big theatrical push to 2027

    2 May 2026

    Roku’s $3 streaming service Howdy hits 1 million subscribers, per recent report

    29 April 2026

    Australia forces Big Tech companies to pay for news or face 2.25% tax.

    28 April 2026

    India’s app market is booming — but global platforms are raking in most of the profits

    23 April 2026

    YouTube extends its AI similarity detection technology to celebrities

    21 April 2026
  • Security

    Ubuntu services were affected by outages after the DDoS attack

    1 May 2026

    Dental software maker fixes bug that exposed patients’ medical records

    1 May 2026

    Hackers are actively exploiting a bug in cPanel, which is used by millions of websites

    30 April 2026

    Sri Lanka reveals another missing payment, days after hackers stole $2.5 million from its finance ministry

    29 April 2026

    The US Supreme Court appears divided on the controversial use of ‘geofence’ search warrants.

    29 April 2026
  • Startups

    FDA Approval, Fundraising and the Reality of Building Healthcare According to BioticsAI Founder

    1 May 2026

    Legal AI startup Legora hits $5.6 billion valuation, and its battle with Harvey just got hotter

    1 May 2026

    Bill Gurley, Jack Altman back startup Pursuit, which helps companies sell to the government

    30 April 2026

    BCI startup Neurable wants to license ‘mind reading’ technology to wearable consumer devices

    29 April 2026

    Founder of Shark Tank-backed startup Sholly sues buyer Sallie Mae

    29 April 2026
  • Transportation

    Uber wants to turn its millions of drivers into a sensor network for self-driving companies

    2 May 2026

    Google’s Gemini AI assistant hits the road in millions of vehicles

    2 May 2026

    EV startup Faraday Future paid $7.5 million to company linked to founder Jia Yueting

    1 May 2026

    Rivian cuts DOE loan to $4.5 billion for Georgia plant

    1 May 2026

    Uber is now in the hospitality industry, thanks in part to artificial intelligence

    29 April 2026
  • Venture

    Musely secures $360 million from General Catalyst without giving up equity

    2 May 2026

    The climate tech IPO window could finally open

    30 April 2026

    Sources: Anthropic Could Raise New $50B Round at $900B Valuation

    30 April 2026

    BMW i Ventures Has a New $300M Fund and AI Rides Shotgun

    29 April 2026

    How a venture firm invests in an increasingly fragmented world

    29 April 2026
  • Recommended Essentials
TechTost
You are at:Home»Security»Notepad++ says Chinese government hackers hijacked its software updates for months
Security

Notepad++ says Chinese government hackers hijacked its software updates for months

techtost.comBy techtost.com3 February 202603 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
Notepad++ Says Chinese Government Hackers Hijacked Its Software Updates For
Share
Facebook Twitter LinkedIn Pinterest Email

The developer of the popular open-source text editor Notepad++ has confirmed that hackers took over the software to deliver malicious updates to users over several months in 2025.

In one blog post Posted on Monday, Notepad++ developer Don Ho said the cyberattack was likely carried out by hackers associated with the Chinese government between June and December 2025, citing multiple analyzes by security experts who looked at malware payloads and attack patterns. Ho said this “would explain the highly selective targeting” seen during the campaign.

Rapid7, which investigated the incidentattributed the hacking to Lotus Blossom, a longtime espionage group known to work for China, and said the hacks targeted government, telecommunications, aviation, critical infrastructure and media sectors.

Notepad++ is one of the longest-running open source projects, spanning more than two decades and counting at least tens of millions of downloads to date, including by employees in organizations around the world.

According to Kevin Beaumont, a security researcher who first discovered the cyber attack and wrote up his findings In December, hackers breached a small number of organizations “with interests in East Asia” after someone unwittingly used an altered version of the popular software. Beaumont said the hackers were able to gain “hands-on” access to victims’ computers running compromised versions of Notepad++.

Ho said the “exact technical mechanism” of how the hackers broke into his servers remains under investigation, but provided some details about how the attack went down.

In the blog, Ho said that the Notepad++ website was hosted on a shared hosting server. The attackers “specifically targeted” the Notepad++ web domain with the aim of exploiting a bug in the software to redirect some users to a malicious server run by the hackers. This allowed hackers to deliver malicious updates to some users who had requested a software update, until The bug was fixed in November and the hackers’ access was terminated in early December.

“We have logs showing that the bad actor attempted to re-exploit one of the patched vulnerabilities, however, the attempt did not fail after the patch was applied,” Ho wrote.

In an email, Ho told TechCrunch that his hosting provider confirmed that its shared server had been hacked, but that the provider did not say how the hackers broke in in the first place.

Ho apologized for the incident and urged users to download it latest version of its software, which contains a fix for the bug.

The cyberattack targeting Notepad++ users is somewhat reminiscent of the 2019-2020 cyberattack affecting customers of SolarWinds, a software company that makes IT and network management tools for large Fortune 500 organizations, including government agencies. Russian government spies hacked into the company’s servers and secretly installed a backdoor in its software, allowing Russian spies to access data on those customers’ networks once the update was released.

The SolarWinds breach affected several government agencies, including Homeland Security and the Departments of Commerce, Energy, Justice and State.

Updated with response from Ho and additional details from Rapid7.

China Chinese cyber security government hackers hijacked months Notepad ++ open source software SolarWinds updates
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleCarbon Robotics built an AI model that detects and recognizes plants
Next Article Fintech CEO and Forbes 30 Under 30 alum indicted for alleged fraud
bhanuprakash.cg
techtost.com
  • Website

Related Posts

Ubuntu services were affected by outages after the DDoS attack

1 May 2026

Dental software maker fixes bug that exposed patients’ medical records

1 May 2026

Hackers are actively exploiting a bug in cPanel, which is used by millions of websites

30 April 2026
Add A Comment

Leave A Reply Cancel Reply

Don't Miss

Netflix delays Greta Gerwig’s ‘Narnia’ for big theatrical push to 2027

2 May 2026

Uber wants to turn its millions of drivers into a sensor network for self-driving companies

2 May 2026

Meta buys robotics startup to boost humanoid AI ambitions

2 May 2026
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Fintech

Stripe introduces Link, a digital wallet that autonomous AI agents can also use

1 May 2026

Y Combinator alum Skio sells for $105 million in cash, raised only $8 million, founder says

1 May 2026

Amazon, Meta join the fight to end Google Pay and PhonePe’s dominance in India

30 April 2026
Startups

FDA Approval, Fundraising and the Reality of Building Healthcare According to BioticsAI Founder

Legal AI startup Legora hits $5.6 billion valuation, and its battle with Harvey just got hotter

Bill Gurley, Jack Altman back startup Pursuit, which helps companies sell to the government

© 2026 TechTost. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.