Warning: This malware is using a Windows feature to steal your banking details

Cybersecurity researchers recently stumbled a new variant of the Coyote malware that uses a Windows feature to steal your banking login details and conduct financial fraud.

Coyote malware was first discovered in December last year.Coyote malware was first discovered in December last year. (Image Source: Microsoft Designer/AI)
2 min readNew DelhiJul 24, 2025 10:26 AM IST First published on: Jul 23, 2025 at 01:19 PM IST

Security researchers have stumbled across a new variant of the infamous Coyote malware that uses a Windows feature to steal bank credentials. Discovered by Akamai, a cybersecurity firm that helps prevent, detect and mitigate cyberthreats, Coyote is now using a Windows feature called the UI Automation framework to understand which cryptocurrency and exchange websites are accessed by users to steal wallets and banking information.

For those wondering, Microsoft’s UI Automation framework allows applications to use assistive technologies to interact and control user elements. As for Coyote, the malware uses various techniques like keylogging and phishing overlays to steal banking information using the Squirrel installer, a popular tool that helps install and update Windows-based applications.

Latest Comment
Post Comment
Read Comments