Apt44 — Threat Actor Profile, Campaigns & Targets

Threat entity extracted from intelligence sources

Frequency
15
occurrences
First Seen
November 6, 2025
Last Seen
July 23, 2026

Apt44 is a apt_group tracked across 12 threat clusters and 15 intelligence report mentions on ThreatCluster. First observed November 6, 2025; most recent activity July 23, 2026.

Related Threat Clusters

Recent Intelligence Reports

  • Notepad++ used in new stealthy attacks targeting Ukraine — Feeds.Feedburner · July 23, 2026
  • Hackers abuse Notepad++ plugins to stealthily install malware — Bleepingcomputer · July 23, 2026
  • Russia's GRU Hackers Target Ukraine With Fake CAPTCHAs and an Unkillable Blockchain Server — Techtimes · July 21, 2026
  • Spain arrests suspected member of pro-Russian hacktivist groups — Bleepingcomputer · July 7, 2026
  • Sandworm and Turla — cloud.google.com · June 8, 2026
  • Sandworm Activity In Industrial Environments What The Data Reveals — www.nozominetworks.com · May 14, 2026
  • Sandworm uses pre-compromised OT environments instead of zero — Industrialcyber.Co · May 14, 2026
  • Espionage Without Noise: Understanding APT36's Enduring Campaigns — Securitybrief · February 11, 2026

CVSS v3.1 Breakdown