zlacker
[return to "Notepad++ supply chain attack breakdown"]
◧
1. Erlang+Dg
[view]
[source]
2026-02-04 00:06:54
>>natebc+(OP)
> Notably, the first scan of this URL on the VirusTotal platform occurred in late September, by a user from Taiwan.
Could this be the attacker? The scan happened before the hack was first exposed on the forum.
◧◩
2. gruez+lh
[view]
[source]
2026-02-04 00:10:34
>>Erlang+Dg
You would be a dumbass to do that, because virustotal allows security researchers to see submitted samples/urls. The last thing you want to do is to draw attention to your C&C server.
[go to top]