
ClickFix campaigns are delivering three malware loaders called BabaDeda Loader, Lorem Ipsum Loader, and Potemkin. BabaDeda Loader targets education and financial organizations, using social engineering to trick users into running PowerShell commands. The loader drops information stealers and remote access trojans by combining hidden PowerShell, in-memory shellcode, and DLL side-loading.
Tap to vote and see what everyone thinks.
Summary by ByteBrief
Steam Workshop abused to spread malware via Wallpaper Engine app