• Calfpupa [she/her]@lemmy.ml
    link
    fedilink
    English
    arrow-up
    3
    ·
    1 hour ago

    It used to be that being a ML (Malicious Linguist) in someones garage was the rage, now we got “Hackers with Chinese characteristics” smh

  • artyom@piefed.social
    link
    fedilink
    English
    arrow-up
    5
    arrow-down
    1
    ·
    2 hours ago

    I’m so confused.

    1. It doesn’t say anything about “state-sponsored attackers” outside of the headline? What state? Why?
    2. Why is a Notepad app connecting to any servers or have credentials at all?
    • Dem Bosain@midwest.social
      link
      fedilink
      English
      arrow-up
      1
      ·
      6 minutes ago

      It wasn’t specifically notepad++ code, but a custom-written updater. That’s why it was connecting to the internet.

    • voracitude@lemmy.world
      link
      fedilink
      arrow-up
      2
      arrow-down
      1
      ·
      edit-2
      27 minutes ago

      First of all, it says right in the blog post they believe it was a state-sponsored group in China:

      Secondly, notepad++ is software. Software is not always written perfectly first go-round, so there may need to be updates made to the code. Rather than the developer going around to everyone’s houses with a USB stick, we make use of “the internet” to deliver those updates. For convenience, software updates are often automatic, with little to no user intervention required.

      I hope that clears things up.