threat-intel
ClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update Lures
High
Summary
ClickFix campaigns are expanding their malware delivery tactics with new loaders, including BabaDeda Loader, Lorem Ipsum Loader, and Storage Crypter, targeting education and financial organizations. These attacks utilize social engineering, DLL side-loading, and hidden payloads to deploy information stealers and RATs, evolving beyond previous techniques and adapting to the disruption of the Fox Tempest operation. The campaigns demonstrate a shift in delivery methods to avoid code signing restrictions.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
