Trending:
SECTION

Cybersecurity

Security threats, solutions, and policy in the Asia-Pacific region

Notepad++ update hijacked for six months in Chinese state-sponsored supply chain attack

Notepad++ update hijacked for six months in Chinese state-sponsored supply chain attack

A Chinese state-sponsored group intercepted Notepad++ updates from June to December 2025, selectively targeting users through compromised hosting infrastructure. The attack exploited weak update verification in versions before 8.8.9, highlighting supply chain risks in open-source tooling - especially relevant given APAC's increasing focus on software supply chain security.

All Cybersecurity News

230 malicious OpenClaw extensions stolen crypto data since January 27
Cybersecurity

230 malicious OpenClaw extensions stolen crypto data since January 27

Security researchers documented 230 malicious OpenClaw "skills" disguised as crypto trading tools uploaded to ClawHub since late January. The extensions exploit OpenClaw's unsandboxed architecture to steal browser data and cryptocurrency information. Enterprise deployments are exposed: hundreds of instances run online without authentication.

Feb 2, 2026