The Notepad++ website was hijacked by 'malicious actors' last year and security researchers are picking through the wreckage
Popular open source text editor Notepad++ experienced a significant security breach last year, and now its developer has given an update regarding the attack.
It's believed that, between June and November 10/December 2, 2025 (independent security experts and its hosting provider disagree on the exact timings), a shared hosting server was compromised, allowing attackers to redirect Notepad++ update traffic to malicious servers.
"According to the analysis provided by security experts...