main_image_star-forming_region_carina_nircam_final-1280

Securonix, a security analytics and operations management platform, has discovered a new computer security threat.

_125867673_7b225922-30ad-494e-af75-c0127a9dba16

that utilizes the James Webb Space Telescope's first public image, SMACS 0723

NGC7496_2880x1620_Lede-scaled

as a component in its impressively complex malware campaign.

Screenshot 2022-09-03 022422

Dubbed “GO#WEBBFUSCATOR,”

Screenshot 2022-09-03 022917

Fill in some text

the multistep attack first originates as a typical phishing email containing a file made to look like Microsoft Office document attachment.

Webb’s First Images

If a user has certain Word macros enabled, the program will run after downloading.

ap07132022000091b-1-1127712-1658143142

Then it downloads another file—in this case, the Webb Telescope's SMACS 0723 photo with a Base64 code.

Screenshot 2022-09-03 024229

Once executed, the malware performs various tests to identify a computer's weaknesses, which the hackers can then exploit.

main_image_star-forming_region_carina_nircam_final-1280

Although GO#WEBBFUSCATOR's end-goal remains unclear, it's still a particularly nasty and ingenious way to infect countless victim's device

_125867673_7b225922-30ad-494e-af75-c0127a9dba16

Share this story to spread awareness to your friends and families!