JadeProx is a China-nexus cyber operation tracked by Group-IB, targeting government, healthcare, and education organizations across Asia and Latin America. It uses the TriBack Loader malware and exploits vulnerabilities such as CVE-2018-11511, CVE-2021-24139, CVE-2021-31755, and CVE-2021-32305.