China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks

Iniciado por Candidosa2, Hoje at 18:18

Respostas: 0   |   Visualizações: 1

Tópico anterior - Tópico seguinte

0 Membros e 1 Visitante estão a ver este tópico.

China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks

Notícia de segurança recolhida automaticamente.


An exposed Alibaba Cloud server has revealed a China-nexus operation that Group-IB tracks as JadeProx. The cluster has targeted government, healthcare, and education organizations across Asia and Latin America with a previously undocumented Windows loader called TriBack Loader.

Group-IB found the server in mid-April 2026 in Alibaba Cloud's Singapore region; it was offline by the time the report


Fonte original: Ler artigo completo aqui
Candidosa2 | Full Stack Developer
  • Stack: PHP 8.x | SMF 2.1.x | OpenCart | Joomla | Wordpress
  • Empresa: Aplic Consultoria em Informática, Lda
  • Local: Matola, Moçambique
Atenção: Antes de aplicar qualquer modificação, faça BACKUP da sua base de dados!

Tags: