Notepad++ Hijacked by State-Sponsored Hackers

https://lemmus.org/post/19851429

So should we at least uninstall our current Notepad++ and then download a new version? What else should we do, the post really doesn’t offer any advice.

In the old post from when the update was released a Heise article is linked, that contains indicators of compromise, and in turn links to Kevin Beaumont for the details of his analysis:

lemmy.zip/post/54712916
heise.de/…/Notepad-updater-installed-malware-1110…
doublepulsar.com/small-numbers-of-notepad-users-r…

Notepad++ updater installed malware - Lemmy.zip

https://archive.is/uCWNB [https://archive.is/uCWNB]