Jewelbug Uses XG-Web for Espionage and Crypto Fraud

TL;DR. China-linked threat actor Jewelbug employs custom malware, XG-Web, for government espionage and cryptocurrency fraud, targeting entities with identity exposure. - Jewelbug exploits identified vulnerabilities, combining phishing and supply chain attacks to infiltrate government networks. - The group leverages its custom XG-Web toolkit for persistent access, data exfiltration, and financial manipulation. - Their operations include harvesting credentials, deploying backdoors, and diverting crypto funds from compromised organizations.

Sources

Back to QLANKR News