Live data from Hacker News

Notepad++ hijacked by state-sponsored actors

notepad-plus-plus.org

361–370 of 560 posts

Re: Notepad++ hijacked by state-sponsored actors

#361

Probably related to this: https://notepad-plus-plus.org/news/v869-about-taiwan/

Everyone is entitled to their opinions. My opinion is that open source documentation is like polite dinner conversation: It’s not the proper place to discuss politics. If an author wishes to use their open source project as a platform to discuss politics, that’s the author’s prerogative. But then, as perhaps in this instance, it could be to the detriment of the project itself.

His code, his rules.

Re: Notepad++ hijacked by state-sponsored actors

#363
post #279

Earlier quoted context omitted.

The whole approach of virus scanning is reactive and incomplete. This is because, except for some uncertain guesswork using "heuristics", it depends upon vendor analysis of submitted malware infection samples after it's already happened to determine specific malware file/process signatures. This doesn't and cannot catch all possible malware that has ever happened, especially if it's new, not widespread, or evaded ana…

PSA?: How to establish trust?

That's somewhat of a social problem beyond the scope of technological solutions.

Re: Notepad++ hijacked by state-sponsored actors

#364

Earlier quoted context omitted.

You can totally say Texas should be independent. A lot of Texans have. You can’t be against the Ukraine war in Russia because Putin is an evil dictator

I'm writing this comment from Russia, St. Petersburg, and yes, you can be against the Ukraine war in Russia.

Always hiliarious when westerners think they know how life works in Russia, China, etc because they heard from it on TV.

Re: Notepad++ hijacked by state-sponsored actors

#366

Earlier quoted context omitted.

Yes, it is very much atypical. Most hacks happen because admins still haven’t applied a 2 years old patch. I hate updates, but it‘s statistically safer that running an old software version. Try exposing a windows XP to the internet and watch how long it takes before it‘s hacked.

Debatable. "I connected Windows XP to the Internet; it was fine" - https://news.ycombinator.com/item?id=40528117 One comment there points out that XP is old enough for infected attack vectors to have all died out. I dunno.

I experienced this first hand in 2014. We got to a point where drive-by exploit kits just weren’t shipping IE8, Java 6 or Windows XP payloads anymore.

Re: Notepad++ hijacked by state-sponsored actors

#367

Earlier quoted context omitted.

I don’t get it, why don’t you all—absolutely all of you reading—use Little Snitch? [1] It really doesn’t compute in my head why would any macOS user not use a network firewall like this, or similar, to block unwanted outgoing HTTP(s) requests. You can easily inspect the packet with tools like Wireshark or Burp Suite Professional (or Community) edition, or any other proxy tool, of which there are many in the macOS eco…

Now you have to worry about Little snitch not "snitching" on all your traffic.

There’s an open source alternative: https://objective-see.org/products/lulu.html

Re: Notepad++ hijacked by state-sponsored actors

#368
post #306

Earlier quoted context omitted.

Why woul building from source be safer? Are you veting every single line of third-party source code you compile and use?

You're sure not vetting any byte of an executable, so building from source is safer.

Binaries or source, it's pretty much the same unless you thoroughly vet the entire source code. Malicious code isn't advertised and commented and found by looking at a couple of functions. It's carefully hidden and obfuscated.

Re: Notepad++ hijacked by state-sponsored actors

#370

> Traffic from certain targeted users was selectively redirected to attacker-controlled served malicious update manifests. I'd be curious to know if there was any pattern as to which users were targeted, but the post doesn't go into any further detail except to say it was likely a Chinese state-sponsored group.

[dead]
Post reply on HN