We want to make you aware of a recently disclosed Notepad++ security incident that may affect systems running outdated versions of the application. If you have Notepad++ installed on any server or workstation, please update it immediately to the latest recommended version: Notepad++ 8.9.1.
This version includes hardened update verification protections designed to prevent the type of attack recently identified. Older and unpatched versions may pose a security risk. Updating now ensures your systems remain protected and compliant with our security requirements.
Action Required:
- Check all servers and endpoints under your responsibility for installations of Notepad++.
- Upgrade Notepad++ to version 8.9.1 as soon as possible.
- Additional details about the incident can be found here: https://notepad-plus-plus.org/news/hijacked-incident-info-update
- If you cannot perform the update or have concerns, please contact IMSS Security for assistance.
Thank you for your prompt attention to this matter.
Best regards,
Ash Hadi MBA - Information Assurance, CISSP, FITSP-M, NSA - CNSS (4011-4016)
For questions, please contact the Help Desk at https://help.caltech.edu, [email protected], or 626.395.3500.