← Threat Actors / North Korea / TA444
DOSSIER // TA444

TA444

▲ High Threat North Korea
Primary Aliases: APT38 APT45 Citrine Sleet DEV-0139
Confidence Rating 70% (Grounded)

TA444 is a North Korea state-sponsored threat actor that primarily focuses on financially motivated operations. They have been active since at least 2017 and have recently shifted their attention to targeting cryptocurrencies. TA444 employs various infection methods and has a diverse range of malware and backdoors at their disposal. They have been attributed to stealing hundreds of millions of dollars' worth of cryptocurrency and related assets.

🎯 Target Sectors & Focus

Defense & Aerospace Government & Diplomacy Financial & Crypto Critical Infrastructure

🛡️ MITRE ATT&CK® Attack Lifecycle (8 TTPs)

📥 Download Navigator JSON
Copied to clipboard

LINK COPIED TO CLIPBOARD