• smeg@infosec.pub
    link
    fedilink
    English
    arrow-up
    161
    arrow-down
    1
    ·
    edit-2
    23 hours ago

    tl;dr A network operator can perform a MitM attack on the built-in updater’s call-out checking for updates by faking the Notepad++ update website, telling it a new version is available at <malware URL> and then downloading and running the malware

    It requires a malicious network operator, or preexisting malware on the host.