18
Notepad++ updater installed malware
(www.heise.de)
This is a most excellent place for technology news and articles.
That doesn't sound wise.
This is the explanation for why:
https://notepad-plus-plus.org/news/v883-self-signed-certificate/
I give up trying to fix the formatting. I had it right, but then adding the image, fucked everything up again, and now blorp crashes when I try to edit it again.
I guess this will be one of the rare cases when you do have to read the article in order to be informed instead of just the comments.
So the private key was left in the Github source code and nobody caught it? Or was it the public key? (which makes this statement way less impactful)
Private key probably. Only the public key is not enough to sign the package.