Hacker News new | past | comments | ask | show | jobs | submit login

One of the findings: Notepad++ has a DLL hijack [1]

[1] https://wikileaks.org/ciav7p1/cms/page_26968090.html




Any executable is vulnerable to DLL hijacking, they're just looking for easier targets that load known DLLs (with known function signatures) from their own folders (NOT system folders).

I'm assuming the goal is to minimise detection by what they call PSPs (av / security products)

This is not a flaw within notepad++


Arguably loading DLLs from non-system folders is bad design in this day and age.


No, it's not, not even 'arguably'.




Consider applying for YC's Summer 2025 batch! Applications are open till May 13

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: