zlacker

[return to "Notepad++ supply chain attack breakdown"]
1. Panzer+CV[view] [source] 2026-02-04 05:43:19
>>natebc+(OP)
Why a simple text editor requires auto-updates at all?
◧◩
2. ddtayl+7p4[view] [source] 2026-02-05 03:24:03
>>Panzer+CV
Because Windows users don't have basic package management that anyone can use and they probably got tired of idiots getting malware trying to Google random Notepad++ binaries. It's turtles all the way down.
◧◩◪
3. Panzer+VB4[view] [source] 2026-02-05 05:37:01
>>ddtayl+7p4
This not answers my question. I just don't see any necessity to update an editor like Notepad++ at all. Such programs are usually stable and there is no need to add new features constantly. Even security vulnerabilities don't matter much, since a text editor isn't that critical piece of software.

My Notepad++ installation, for example, is 5 years old and it's fine for me.

◧◩◪◨
4. ddtayl+CF4[view] [source] 2026-02-05 06:14:47
>>Panzer+VB4
It probably started with no updates and only a link in the Help menu. Over time they noticed users were getting scammed from Google Ads and other malware delivery methods.

As others have mentioned it a program like this should default into a configuration that has no networking capabilities.

[go to top]