Notepad++ developers reported a supply chain attack from June to December 2025, with attackers rotating C2 server addresses and using various infection chains. Kaspersky solutions blocked identified attacks, and the attackers used different payloads, including Cobalt Strike Beacon and Chrysalis backdoor.