Notepad++ Hacked for Six Months

How many here are users of Notepad++?

(I can't recall the last time I used Windows for text editing, but it would have been NPPP.)

9 Likes

That's... quite a window of opportunity. I like NPPP a lot, political leanings aside. Now I have to remember if it's installed on any of my VMs

2 Likes

Some details.

It seems like only the in-app updater was affected - if you downloaded it straight from the official source you should be ok. If the build version is before June 2025 that predates all of this and looks like you are fine (yay for never updating on my host). Seems like it was also for targeted users but so far that’s unknown - I am assuming not little old me but still gives me some agita.

If it’s after well I’m not sure what next steps for you should be. I have a few VM’s with a recent build. Probably run some scanning softwares? Pretty crazy this happened to such a widely used piece of software.

2 Likes

Come more in-depth stuff here including IoC's

2 Likes

Some more info. Seems like East Asian supply chain organizations were the target but still good info in this thread about how to tell if you were affected and what you should do next.

2 Likes

Does anyone know of any alternatives friendly to windows? I feel like I will never be allowed to use this again now from IT. Sublime text still kicking around?

1 Like
4 Likes

Oh nice I use that on my personal linux pc, I didn’t realize it was also available for windows. Excellent thank you.

1 Like

VSCode is a good alternative or UltraEdit if you need to open huge files.

1 Like

Since I'm a KDE fan, kate is my go-to for text editing of all kinds.

2 Likes

Honestly the new Windows 11 integrated notepad software is actually pretty good

Well... better than it was. :wink:

2 Likes

VS Code is surprisingly decent as a text editor, and works on Linux and macOS too.

1 Like

I will never get over that it has AI integration lol. Though I do like it at least has tabs now.

For sure, I dislike the forced copilot integration into everything as well. And yes it’s definitely missing features compared to Notepad++ like macros and such if you were using those. Much better than it used to be though and it’s integrated for Windows users! As Kevin said, VS Code is definitely the way to go though if you want something full featured with extensions

I have used NPPP for a long time, fortunately, I'm one of those who just cancels the "There's a new version available" dialog. So fortunetly, I accidentally avoided this mess. Then IT forced an upgrade to the version that has resolved this issue.

Since, I am forced to use Windows 11 at work, I have navigated to doing the vast majority of my text editing and programming in Wezterm, with NeoVim.

I have also just discoverd glazewm which has changed my workflow signifcantly.

Think Linux Hyprland.

Big Notepad++ user here also. I use Chocolatey for my installation and updates, so may have avoided this due to that unless their hosting provider was intercepting those installs also, but looks like I was unaffected.