Tartışma

China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks

Başlatan The Hacker News · 23 Tem 2026 17:55 · 0 Görüntülenme · 0 Yanıtlar
Konuyu Açan #0
An exposed Alibaba Cloud server has revealed a China-nexus operation that Group-IB tracks as JadeProx. The cluster has targeted government, healthcare, and education organizations across Asia and Latin America with a previously undocumented Windows loader called TriBack Loader.

Group-IB found the server in mid-April 2026 in Alibaba Cloud's Singapore region; it was offline by the time the report

Okumaya devam et...

Yanıt vermek için giriş yapmış olmalısınız.

0 alıntı seçildi