Ukraine's Computer Emergency Response Team issued a warning on July 24, 2026, revealing that the Russia-aligned threat cluster UAC-0099 has begun hiding malware inside a counterfeit Notepad++ plugin — ...
Ukraine's CERT has uncovered attacks distributing an archive containing the legitimate Notepad++ application and a malicious utility called LunchPoke disguised as a plugin to establish persistence.