Back to News
Cybersecurity

New TASK#STOMP Campaign Unleashes PowerShell Backdoor for Data Theft

A newly identified PowerShell backdoor, TASK#STOMP, poses significant risks by exfiltrating sensitive data from affected systems.

Cybersecurity researchers have revealed the TASK#STOMP campaign, which employs a sophisticated PowerShell backdoor to infiltrate compromised systems and extract sensitive information. This backdoor is designed to automatically harvest business documents, monitor the filesystem in real-time for new files, and steal critical assets such as Wi-Fi passwords, clipboard contents, and even take screenshots of user activity. The stealthy nature of this malware makes it particularly concerning, as it operates seamlessly in the background, evading detection by conventional security measures.

For businesses, the implications of TASK#STOMP are profound, emphasizing the urgent need for robust cybersecurity strategies. Organizations must enhance their endpoint protection and implement comprehensive monitoring solutions to detect unusual activities that may indicate a breach. The ability of this backdoor to capture various types of sensitive information highlights the necessity for data loss prevention (DLP) measures and staff training on recognizing phishing attempts, which are commonly used to deploy such malware. This incident underscores the evolving landscape of cyber threats, where attackers leverage advanced tools to exploit vulnerabilities, making it crucial for businesses to remain vigilant and proactive in their cybersecurity posture.

---

*Originally reported by [The Hacker News](https://thehackernews.com/2026/09/taskstomp-powershell-backdoor-steals.html)*