Notepad++ hijacking blamed on Chinese Lotus Blossom crew behind Chrysalis backdoor

Theregister | 03-02-2026 12:38pm |

The group targets telecoms, critical infrastructure - all the usual high-value orgs Security researchers have attributed the Notepad++ update hijacking to a Chinese government-linked espionage crew called Lotus Blossom (aka Lotus Panda, Billbug), which abused weaknesses in the update infrastructure to gain a foothold in high-value targets by delivering a newly identified backdoor dubbed Chrysalis....

Stay Updated with the Latest News!

Don't miss out on breaking stories and in-depth articles.