← Back to feed
general GBHackers

New TriBack Loader Evades EDR Using Signed Binaries and Win32 Callback APIs

GBHackers

A new shellcode loader, dubbed “TriBack Loader,” to a China-nexus intrusion cluster tracked as JadeProx, with the malware explicitly engineered to evade mode...

Read the full story GBHackers →

Related Coverage

general Researchers Find Malware That Uses AI Models Instead of Human Hackers for Control GBHackers · Sep 23 general Prismor: Open-source runtime control plane for AI agents Help Net Security · Sep 23 general Hackers Exploit Check Point 0-Day Flaw to Execute Code on Management Servers GBHackers · Sep 23