Rugmi

Aliases: Penguish

First seen
2020-07-15 00:00:00
Malware type
trojan, backdoor
Family
Malware family
Last IoC activity
2026-07-18 23:24:26
Profile updated
2026-07-07 15:18:38

Targeted industries: government-and-public-sector defense-and-aerospace

Context

Rugmi, also known as Penguish, is a sophisticated backdoor trojan used primarily for cyber-espionage activities. It is known for its capabilities to infiltrate government and defense networks, allowing attackers to sustain long-term access.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Rugmi_Auto (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Rugmi (report)
  • thehackernews.com — New Rugmi Malware Loader Surges With (report)
  • thehackernews.com — Opsec Failure Exposes Coquetttes (report)

External references