# Fake Notepad++ Plugin Delivers MATCHBOIL.V2 Malware in Targeted Attacks

A threat actor known as UAC-0099 is using a fake Notepad++ plugin to distribute the MATCHBOIL.V2 backdoor. The attack targets users who download the plugin from unofficial sources, posing a supply chain risk. This highlights the importance of verifying software downloads to avoid malware infections.

**Importance:** 3/5

## Sources

### Security
- [The Hacker News](https://thehackernews.com/2026/07/fake-notepad-plugin-delivers.html) — Fri, 24 Jul 2026 12:20:57 +0530