New Rugmi Malware Loader Surges with Hundreds of Daily Detections
ID: 457cc453-a7cc-5d0b-b162-9f78d468d6a9
STIX ID: report--457cc453-a7cc-5d0b-b162-9f78d468d6a9
Feed Name: The Hacker News
Threat Score
ESET and other vendors observed a surge in detections for a new loader (Win/TrojanDownloader.Rugmi) used to deliver multiple information-stealing malware families (Lumma, Vidar, RecordBreaker/Raccoon V2, Rescoms) via channels such as malvertising, fake updates, cracked software and Discord CDN; the report also notes a new NetSupport RAT variant being abused by initial access brokers and highlights MaaS distribution and evolving evasion tactics.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
