#1 out of 22.0M est. views10.36%
technology20h ago
Notepad++ says Chinese government hackers hijacked its software updates for months | TechCrunch
Techcrunch.com and 3 more
- Notepad++ expanded defenses by requiring both the download signature and certificate validation, and by signing the update server responses to thwart tainted updates.
- Direct downloads from the official Notepad++ site largely avoided the impact, highlighting the risk was concentrated on users relying on the built-in updater.
- Rapid7’s investigation ties the incident to Lotus Blossom, a Chinese espionage group active since 2009 with operations across Asia and Central America.
Vote 49

