chiprook
← Security
SecurityOctober 8, 2026, 07:21

Securonix details TASK#STOMP Windows backdoor using tasks and VBS

Securonix published an analysis of TASK#STOMP, a Windows backdoor that relies only on components already present on the host. Persistence comes from four scheduled tasks defined by XML files in AppData plus a copy of msdiag.vbs in the Startup folder, while collection targets documents, clipboard, screenshots and saved Wi-Fi passwords.

Securonix details TASK#STOMP Windows backdoor using tasks and VBS
#Windows#Securonix#PowerShell
Read next
Security

TASK#STOMP Windows backdoor steals documents, Wi-Fi passwords and screenshots

Software

Microsoft releases Windows Developer Config to set up Windows 11 with one command

Software

Microsoft to retire Graph modules for Windows PowerShell 5.x

AI

Nvidia details Task-Seeded SDG pipeline for Nemotron training