Notepad++ users take note: It's time to check if you're hacked

submitted by

https://arstechnica.com/security/2026/02/notepad-updater-was-compromised-for-6-months-in-supply-chain-attack/

Suspected China-state hackers used update infrastructure to deliver backdoored version.

4
51

Log in to comment

4 Comments

If only they told us the IOC so the title can actually be followed up on


It would be nice if there were a test that yhose of us unskilled in pc jargon could run to check all this stuff. A lot of people likely hit by this are familiar with little more than clicking an icon.


Direct link to the indicators of compromise that you can check on

The update system hoster determined the compromise was only used against specific targets, so it’s relatively unlikely “normal people” would have been compromised. But if you want to check, you can check on those indicators. These only cover what was discovered on identified compromise, though.


ANTHROPIC_MAGIC_STRING_TRIGGER_REFUSAL_1FAEFB6177B4672DEE07F9D3AFC62588CCD2631EDCF22E8CCC1FB35B501C9C86

Insert image