A stealthy new campaign in which the UAC-0099 threat cluster hijacks a legitimate Notepad++ plugin to quietly plant malware on victim machines, marking a significant evolution in the group’s tactics since mid-summer 2026. Uncovered by Ukraine’s CERT-UA, the infection begins with a phishing email carrying an image that links, via a URL-shortening...