logo

'Coyote' Malware Begins Its Hunt, Preying on 61 Banking Apps

ID: 2b2823ee-59f5-5127-bb3e-d70e412bfe6c

STIX ID: report--2b2823ee-59f5-5127-bb3e-d70e412bfe6c

Feed Name: Dark Reading

Threat Score
72/100

Date Published: 2024-02-08

Date Updated: 2026-04-21

Author: Nate Nelson, Contributing Writer

...
...

**Executive summary:** Kaspersky researchers identified a novel multi-stage banking Trojan called "Coyote" that hunts credentials for 61 banking applications (mostly in Brazil), leveraging legitimate tools (Squirrel), Node.js and the Nim language to evade detection; it supports overlays, keystroke logging, screenshots, process manipulation and remote C2 commands, and could expand beyond Brazil or evolve into broader initial-access/backdoor campaigns.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.