Home / Technology / Notepad++ Updater Hijacked for Malware Downloads!
Notepad++ Updater Hijacked for Malware Downloads!
11 Dec, 2025
Summary
- Notepad++ updater was compromised, linking to malware servers.
- Hackers exploited a vulnerability in the updater's security checks.
- A manual update to version 8.8.9 is available to fix the issue.

Notepad++ users were recently alerted to a significant security risk involving the software's update mechanism. The updater, known as WinGUp, was found to be vulnerable to traffic hijacking, allowing hackers to redirect users to malicious servers.
Attackers exploited a flaw in how the updater verified the authenticity of update files. This allowed them to trick the system into downloading and executing unwanted, infected files instead of the official Notepad++ updates. This exploit posed a serious threat to users' systems.
The Notepad++ development team has since addressed this critical vulnerability. Users should immediately download and manually install the latest version, 8.8.9, to secure their systems. Additionally, running a comprehensive malware scan with an up-to-date antivirus program is strongly recommended.




