APT39 was created to bring together previous activities and methods used by this actor, and its activities largely align with a group publicly referre...

Threat Actor Profile

APT39

State-sponsored threat group originating from IR. Uses 72 known MITRE ATT&CK techniques.

72 TTPs Mapped Real-Time Alerts

Actor Overview

Origin Country
IR
Known Techniques
72 TTPs

MITRE ATT&CK Techniques

T1071T1071.001T1071.004T1560T1560.001T1197T1547T1547.001T1547.009T1110T1115T1059T1059.001T1059.005T1059.006 +57 more

Related Threat Reports

Premium
APT Campaign Analysis - Q4 2025Dec 2025
New Tactics Observed in WildDec 2025
Infrastructure Mapping ReportDec 2025
Stay Updated

Get alerts when new intel on APT39 is published.

Actor Details

Primary Name
APT39
Known Aliases
Chafer, REMIX KITTEN, COBALT HICKMAN, G0087, Radio Serpens, TA454, ITG07
Data Source
Precursor Intelligence
Need API Access?

Integrate threat actor data into your SIEM or SOAR.

View Plans →