Resend my activation email : Register : Log in 
BCF: Bike Chat Forums


Notepad++ - Update ASAP.

Reply to topic
Bike Chat Forums Index -> The Geek Zone
View previous topic : View next topic  
Author Message

CaNsA
Super Spammer



Joined: 02 Jan 2008
Karma :

PostPosted: 23:18 - 12 Mar 2017    Post subject: Notepad++ - Update ASAP. Reply with quote

https://notepad-plus-plus.org/news/notepad-7.3.3-fix-cia-hacking-issue.html

Quote:
08 Mar 2017 21:58:00

"Vault 7: CIA Hacking Tools Revealed" has been published by Wikileaks recentely, and Notepad++ is on the list.

The issue of a hijacked DLL concerns scilexer.dll (needed by Notepad++) on a compromised PC, which is replaced by a modified scilexer.dll built by the CIA. When Notepad++ is launched, the modified scilexer.dll is loaded instead of the original one.
It doesn't mean that CIA is interested in your coding skill or in your sex message content typed in Notepad++, but rather it prevents raising any red flags while the DLL does data collection in the background.

It's not a vulnerability/security issue in Notepad++, but for remedying this issue, from this release (v7.3.3) forward, notepad++.exe checks the certificate validation in scilexer.dll before loading it. If the certificate is missing or invalid, then it just won't be loaded, and Notepad++ will fail to launch.

Checking the certificate of DLL makes it harder to hack. Note that once users’ PCs are compromised, the hackers can do anything on the PCs. This solution only prevents from Notepad++ loading a CIA homemade DLL. It doesn't prevent your original notepad++.exe from being replaced by modified notepad++.exe while the CIA is controlling your PC.

Just like knowing the lock is useless for people who are willing to go into my house, I still shut the door and lock it every morning when I leave home. We are in a f**king corrupted world, unfortunately.

Otherwise there are a lot of enhancements and bug-fixes which improve your Notepad++ experience. For all the detail change log, please check in the Download page.
 Back to top
View user's profile Send private message You must be logged in to rate posts

Rogerborg
nimbA



Joined: 26 Oct 2010
Karma :

PostPosted: 08:57 - 13 Mar 2017    Post subject: Reply with quote

Cheers, chap.

Note that the auto-updater isn't picking up 7.3.3 yet (101h4x) so you'll want to go and download and install 7.3.3 manually.

Unless that's a r00tk1t.
____________________
Biking is 1/20th as dangerous as horse riding.
GONE: HN125-8, LF-250B, GPz 305, GPZ 500S, Burgman 400 // RIDING: F650GS (800 twin), Royal Enfield Bullet Electra 500 AVL, Ninja 250R because racebike
 Back to top
View user's profile Send private message You must be logged in to rate posts

colink98
Could Be A Chat Bot



Joined: 27 Jun 2016
Karma :

PostPosted: 11:47 - 13 Mar 2017    Post subject: Reply with quote

running Notepad++ v6.8.8

am I victim of the CIA....
maybe they been spying on the all the emails between me and various crap vendors...
____________________
PCX125 (stolen) - CBF600 (current)
Ride it like you stole it.
ride sensible and not like an idiot and you wont get 6 points in one week.
 Back to top
View user's profile Send private message You must be logged in to rate posts

kgm
World Chat Champion



Joined: 04 Jun 2015
Karma :

PostPosted: 13:28 - 13 Mar 2017    Post subject: Reply with quote

Good to know ta Thumbs Up
 Back to top
View user's profile Send private message You must be logged in to rate posts

Tigerlea
Nitrous Nuisance



Joined: 07 Jul 2016
Karma :

PostPosted: 11:56 - 14 Mar 2017    Post subject: Reply with quote

Oh noes, they're stealing all my codez..


Cheers. I'll pass this on to the fellows.
 Back to top
View user's profile Send private message You must be logged in to rate posts

Rogerborg
nimbA



Joined: 26 Oct 2010
Karma :

PostPosted: 12:01 - 14 Mar 2017    Post subject: Reply with quote

All your code base are belong to them.
____________________
Biking is 1/20th as dangerous as horse riding.
GONE: HN125-8, LF-250B, GPz 305, GPZ 500S, Burgman 400 // RIDING: F650GS (800 twin), Royal Enfield Bullet Electra 500 AVL, Ninja 250R because racebike
 Back to top
View user's profile Send private message You must be logged in to rate posts

noobRider
World Chat Champion



Joined: 23 Sep 2012
Karma :

PostPosted: 12:32 - 14 Mar 2017    Post subject: Reply with quote

BTW that DLL is also used by Tortoise Git and SVN
____________________
Licence: Nov 2012, Bikes: Suzuki GN125, Moto Guzzi Strada 750, Triumph Sprint ST 955i x 2
AnPhonEh: I need plans, I need contingency plans also, I need back up contingency plans
 Back to top
View user's profile Send private message You must be logged in to rate posts

The Shaggy D.A.
Super Spammer



Joined: 12 Sep 2008
Karma :

PostPosted: 17:00 - 14 Mar 2017    Post subject: Reply with quote

A number of us use this at work, thanks for the heads up.
____________________
Chances are quite high you are not in my Monkeysphere, and I don't care about you. Don't take it personally.
Currently : Royal Enfield 350 Meteor
Previously : CB100N > CB250RS > XJ900F > GT550 > GPZ750R/1000RX > AJS M16 > R100RT > Bullet 500 > CB500 > LS650P > Bullet Electra X & YBR125 > Bullet 350 "Superstar" & YBR125 Custom > Royal Enfield Classic 500 Despatch Limited Edition (28 of 200) & CB Two-Fifty Nighthawk > ER5
 Back to top
View user's profile Send private message You must be logged in to rate posts

Rogerborg
nimbA



Joined: 26 Oct 2010
Karma :

PostPosted: 18:42 - 14 Mar 2017    Post subject: Reply with quote

noobRider wrote:
BTW that DLL is also used by Tortoise Git and SVN

Ow, muh repos!
____________________
Biking is 1/20th as dangerous as horse riding.
GONE: HN125-8, LF-250B, GPz 305, GPZ 500S, Burgman 400 // RIDING: F650GS (800 twin), Royal Enfield Bullet Electra 500 AVL, Ninja 250R because racebike
 Back to top
View user's profile Send private message You must be logged in to rate posts

Jayy
Mr. Ponzi



Joined: 08 Jun 2009
Karma :

PostPosted: 23:06 - 16 Mar 2017    Post subject: Reply with quote

I use Sublime Text 3, how do I check if that shit is on the l33t h4x0rz list?
 Back to top
View user's profile Send private message You must be logged in to rate posts

G
The Voice of Reason



Joined: 02 Feb 2002
Karma :

PostPosted: 00:05 - 17 Mar 2017    Post subject: Re: Notepad++ - Update ASAP. Reply with quote

Quote:
An agent will need to install and run the malicious app on the target PC for it to gather data. It's important to note the standard programs -- which you might use on a daily basis -- are safe so you don't need to worry they are spying on you


Oh well - thought it'd be nice if they'd tidy some spaghetti code up with me - they've probably got some nice tools to do that too Smile.
 Back to top
View user's profile Send private message You must be logged in to rate posts

CaNsA
Super Spammer



Joined: 02 Jan 2008
Karma :

PostPosted: 00:16 - 17 Mar 2017    Post subject: Reply with quote

Jayy wrote:
I use Sublime Text 3, how do I check if that shit is on the l33t h4x0rz list?

https://www.bikechatforums.com/viewtopic.php?t=318451
 Back to top
View user's profile Send private message You must be logged in to rate posts

Baggyman
Crazy Courier



Joined: 20 Feb 2017
Karma :

PostPosted: 12:45 - 17 Mar 2017    Post subject: Reply with quote

I just proceed on the basis that there are about 6 million people in the world that the CIA will find more interesting than me and they probably do not have resources to look at more than the top 100 on that list.
____________________
Old fart
Baghira, modded GS1000 and the T150 I bought in 1978 when I was 21
 Back to top
View user's profile Send private message You must be logged in to rate posts

Val
World Chat Champion



Joined: 03 Nov 2012
Karma :

PostPosted: 21:23 - 19 Mar 2017    Post subject: Reply with quote

Rogerborg wrote:
Cheers, chap.

Note that the auto-updater isn't picking up 7.3.3 yet (101h4x) so you'll want to go and download and install 7.3.3 manually.

Unless that's a r00tk1t.


Run the update now - it will get the fix fine Thumbs Up

Although I like to use more PE - got use to it in the 80s.
____________________
Adrian Monk: Unless I'm wrong, which, you know, I'm not...
Yamaha Fazer FZS 600, MT09, XSR 900
 Back to top
View user's profile Send private message Send e-mail You must be logged in to rate posts
Old Thread Alert!

The last post was made 7 years, 36 days ago. Instead of replying here, would creating a new thread be more useful?
  Display posts from previous:   
This page may contain affiliate links, which means we may earn a small commission if a visitor clicks through and makes a purchase. By clicking on an affiliate link, you accept that third-party cookies will be set.

Post new topic   Reply to topic    Bike Chat Forums Index -> The Geek Zone All times are GMT + 1 Hour
Page 1 of 1

 
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You cannot download files in this forum

Read the Terms of Use! - Powered by phpBB © phpBB Group
 

Debug Mode: ON - Server: birks (www) - Page Generation Time: 0.11 Sec - Server Load: 0.46 - MySQL Queries: 17 - Page Size: 83.92 Kb