TraderTraitor — APT Profile

TraderTraitor targets blockchain companies through spear-phishing messages. The group sends these messages to employees, particularly those in system administration or software development roles, on various communication platforms, intended to gain access to these start-up and high-tech companies. TraderTraitor may be the work of operators previously responsible for APT38 activity.

Also tracked as

UNC4899, Jade Sleet

IntelFusions coverage (2)

Tools & malware

Vendor research

Countries linked to this actor

Read the full analysis on IntelFusions