I always wonder how these "security experts" can identify which state is responsible for the compromise. In this case its "Chinese" state actors. But how do we really know? Wouldn't it be in the best interests of state sponsored hacking teams to hide or blame other states?
post
replies:
So how do you tell if you were targeted?
replies:
permalink
fedilink
source
parent
gup.exe making network requests for other than: notepad-plus-plus.org, github.com and release-assets.githubusercontent.com
https://doublepulsar.com/small-numbers-of-notepad-users-reporting-security-woes-371d7a3fd2d9
The write up is from December when it was first disclosed afaik
all 6 comments