THREATOPS
THREAT OPSThreat News › China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud

China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud

lowthehackernewsPublished 2026-08-14

The China-linked threat actor known as Jewelbug has been observed carrying out cyber espionage operations targeting governments and militaries, while simultaneously engaging in cryptocurrency fraud.

"Both missions are administered from a single control panel, XG-Web, a browser-centric remote-access and information-stealing framework that turns a victim's browser into a full remote-control

MITRE ATT&CK techniques

Original source: https://thehackernews.com/2026/08/china-linked-jewelbug-uses-xg-web-for.html