importantSYS.SOURCE: The Hacker News• 2026-07-24T12:20:57+05:30
Malicious Notepad++ Plugin Exploits UAC-0099 Campaign to Deploy MATCHBOIL.V2 Malware
A malicious Notepad++ plugin is used in UAC-0099 campaigns to deploy MATCHBOIL.V2, leveraging phishing and VBScript to execute payloads. The attack involves multiple stages, including DLLs and scheduled tasks, with broader implications for email security and vulnerability exploitation.
The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of a new campaign that involves the use of a malicious program that's dressed up as a Notepad++ plugin to compromise Windows systems.
The activity has been attributed by the agency to a threat cluster it tracks as UAC-0099, a Russia-aligned group that has previously observed weaponizing security flaws in WinRAR software to
*** END OF TRANSMISSION ***