logo

New Rugmi Malware Loader Surges with Hundreds of Daily Detections

ID: 457cc453-a7cc-5d0b-b162-9f78d468d6a9

STIX ID: report--457cc453-a7cc-5d0b-b162-9f78d468d6a9

Feed Name: The Hacker News

Threat Score
70/100

Date Published: 2023-12-28

Date Updated: 2026-04-23

Author: [email protected] (The Hacker News)

...
...

ESET and other vendors observed a surge in detections for a new loader (Win/TrojanDownloader.Rugmi) used to deliver multiple information-stealing malware families (Lumma, Vidar, RecordBreaker/Raccoon V2, Rescoms) via channels such as malvertising, fake updates, cracked software and Discord CDN; the report also notes a new NetSupport RAT variant being abused by initial access brokers and highlights MaaS distribution and evolving evasion tactics.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.