• artyom@piefed.social
    link
    fedilink
    English
    arrow-up
    5
    arrow-down
    2
    ·
    3 hours ago

    I’m so confused.

    1. It doesn’t say anything about “state-sponsored attackers” outside of the headline? What state? Why?
    2. Why is a Notepad app connecting to any servers or have credentials at all?
    • voracitude@lemmy.world
      link
      fedilink
      arrow-up
      3
      arrow-down
      1
      ·
      edit-2
      2 hours ago

      First of all, it says right in the blog post they believe it was a state-sponsored group in China:

      Secondly, notepad++ is software. Software is not always written perfectly first go-round, so there may need to be updates made to the code. Rather than the developer going around to everyone’s houses with a USB stick, we make use of “the internet” to deliver those updates. For convenience, software updates are often automatic, with little to no user intervention required.

      I hope that clears things up.

    • Dem Bosain@midwest.social
      link
      fedilink
      English
      arrow-up
      1
      ·
      1 hour ago

      It wasn’t specifically notepad++ code, but a custom-written updater. That’s why it was connecting to the internet.