Spyke

know this was not their fault but i haven’t trusted np++ since the charlie hebdo stunt that made it look like the app was a virus.

9

There's a chance malware was downloaded onto your system through Notepad++'s update mechanism.

The post does specify:

Traffic from certain targeted users was selectively redirected to attacker-controlled served malicious update manifests.

So, I guess, if you're ordinary enough to not be targeted by state-sponsored hackers, you might not be affected, but it's not guaranteed.

2

According to the analysis provided by the security experts, the attack involved infrastructure-level compromise that allowed malicious actors to intercept and redirect update traffic destined for notepad-plus-plus.org. [...] The attackers specifically targeted Notepad++ domain with the goal of exploiting insufficient update verification controls that existed in older versions of Notepad++.

🪟h w🪟w, every🪟ne d🪟ing their 🪟wn thing with updates actually isn't a g🪟🪟d idea? C🪟uld've never guessed.

-8
cannedtunareply
lemmy.world

I’m sorry, but can you give me plain English for those that don’t speak emoji? Or at least a language I can run through a translator?

3
lemmy.world

Pretty sure it says

Oh wow, everyone doing their own thing with updates isn't a good idea? Could've never guessed.

8
Rentlarreply
lemmy.ca

Thanks to your comment, I stopped reading it correctly and started reading each as "Windows" in the style of Steve Ballmer remixed into this YouTubePoop music video.

5
lemmy.world

If it wasn't obvious that every 'o' was replaced with a window emoji to lampshade how I'm referring to Windows making each individual application figure out how they do updates, I don't know what to tell you.

-4

You reached the end

Notepad++ Hijacked by State-Sponsored Hackers | Spyke