Cybersecurity researchers have flagged multiple ClickFix campaigns that deliver three malware loaders called BabaDeda Loader, Lorem Ipsum Loader, and Potemkin, per independent reports from Morphisec, BlueVoyant, and Huntress, respectively.

Attacks involving BabaDeda Loader, observed in April 2026, have targeted education and financial organizations.

“Earlier BabaDeda activity was known for – Read More