URL has been copied successfully!
China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks
URL has been copied successfully!

Collecting Cyber-News from over 60 sources

China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks

An exposed Alibaba Cloud server has revealed a China-nexus operation that Group-IB tracks as JadeProx. The cluster has targeted government, healthcare, and education organizations across Asia and Latin America with a previously undocumented Windows loader called TriBack Loader.Group-IB found the server in mid-April 2026 in Alibaba Cloud’s Singapore region; it was offline by the time the report

First seen on thehackernews.com

Jump to article: thehackernews.com/2026/07/china-nexus-jadeprox-uses-new-triback.html

Loading

Share via Email
Share on Facebook
Tweet on X (Twitter)
Share on Whatsapp
Share on LinkedIn
Share on Xing
Copy link