Rugmi
Aliases: Penguish
- First seen
- 2020-07-15 00:00:00
- Malware type
- trojan, backdoor
- Family
- Malware family
- Last IoC activity
- 2026-07-18 23:24:26
- Profile updated
- 2026-07-07 15:18:38
Targeted industries: government-and-public-sector defense-and-aerospace
Context
Rugmi, also known as Penguish, is a sophisticated backdoor trojan used primarily for cyber-espionage activities. It is known for its capabilities to infiltrate government and defense networks, allowing attackers to sustain long-term access.
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Win_Rugmi_Auto (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Rugmi (report)
- thehackernews.com — New Rugmi Malware Loader Surges With (report)
- thehackernews.com — Opsec Failure Exposes Coquetttes (report)