Skip to content

ClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update Lures

  • by

​Cybersecurity researchers have flagged multiple ClickFix campaigns that deliver three malware loaders called BabaDeda Loader, Lorem Ipsum Loader, and Potemkin, per independent reports from Morphisec, BlueVoyant, and Huntress, respectively.

Attacks involving BabaDeda Loader, observed in April 2026, have targeted education and financial organizations.

“Earlier BabaDeda activity was known for Cybersecurity researchers have flagged multiple ClickFix campaigns that deliver three malware loaders called BabaDeda Loader, Lorem Ipsum Loader, and Potemkin, per independent reports from Morphisec, BlueVoyant, and Huntress, respectively.

Attacks involving BabaDeda Loader, observed in April 2026, have targeted education and financial organizations.

“Earlier BabaDeda activity was known for  The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *