Weekly security digest covers Gyazo leak and document-stealing Windows malware

The roundup highlights a Gyazo incident that compromised data tied to 23.6 million users, along with a Windows backdoor dubbed TASK#STOMP that exfiltrates business files and other sensitive information. Other briefs discuss SAP ECC migration planning, projected European AI expenditures, AI crawler activity, and controls for AI agent data.
The Gyazo incident reportedly exposed information connected to 23.6 million users. Separately, researchers examined TASK#STOMP, a Windows backdoor that hunts for business documents, sends them to remote servers, and persists to capture later edits. It also collects saved Wi-Fi credentials, clipboard contents, and screenshots, while accepting operator commands.
Other items in the digest covered SAP ECC migration timing and costs, IDC's forecast that European AI spending could approach $470 billion by 2030, Akamai's observation of AI crawlers issuing POST requests, and guidance on securing data used by AI agents.
The Gyazo breach could affect millions of users who stored or shared screenshots, potentially exposing private or work-related content. TASK#STOMP may put businesses at risk of document theft, credential compromise, and follow-on intrusions. The broader AI items suggest that as crawlers and agents handle more data, organizations may need clearer controls to protect privacy and maintain trust. Individuals, IT teams, and executives could all feel consequences through fraud, remediation costs, or lost confidence.