logo

Notepad++ supply chain incident

ID: 3e4c6022-d70a-565c-b2a4-820eb9e31c00

STIX ID: report--3e4c6022-d70a-565c-b2a4-820eb9e31c00

Feed Name: Expel Blog

Threat Score
65/100

Date Published: 2026-02-02

Date Updated: 2026-04-27

Author: Aaron Walton

...
...

Notepad++ disclosed that attackers abused their hosting/provider to tamper with automatic updates, causing some users—primarily in Southeast Asia—to receive remote‑access malware which fetched additional staged payloads; the incident was limited to a small number of targeted organizations and Rapid7 has published indicators and analysis.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.