TA444
High ConfidenceHigh ThreatAPT38 • Jade Sleet • TraderTraitor • UNC4899
TA444 is a North Korean threat actor focused on cryptocurrency theft and financial cybercrime. The group employs sophisticated social engineering tactics, often impersonating recruiters, venture capitalists, or cryptocurrency professionals to target individuals in the blockchain and DeFi space. TA444's operations support North Korea's efforts to circumvent international sanctions and fund state programs through illicit cyber activities.
TA444 is a North Korean threat actor focused on cryptocurrency theft and financial cybercrime. The group employs sophisticated social engineering tactics, often impersonating recruiters, venture capitalists, or cryptocurrency professionals to target individuals in the blockchain and DeFi space. TA444's operations support North Korea's efforts to circumvent international sanctions and fund state programs through illicit cyber activities.
Target Sectors
Target Regions
Attributed to RGB (Reconnaissance General Bureau) (North Korea). Attribution confidence: High.
Future Outlook
TA444 is expected to continue operations targeting Cryptocurrency sectors.
First observed activity of TA444
Continued active operations