TASK#STOMP deploys a PowerShell backdoor that steals documents and Wi-Fi passwords, monitors files, and executes remote commands.
Microsoft has reminded admins to migrate Entra ID users to phishing-resistant authentication methods to avoid sign-in ...
The TASK#STOMP backdoor steals office documents on Windows PCs, grabs new files as they're saved, and can rebuild itself if partly removed.
Threat actors are leveraging ClickFix-like lures to deliver a previously undocumented remote access trojan called ChainScript, according to Blackpoint ...