{
	"id": "452a957e-2f52-4b66-9b5f-d76b273d3bab",
	"created_at": "2026-04-06T00:09:30.969816Z",
	"updated_at": "2026-04-10T03:35:45.915028Z",
	"deleted_at": null,
	"sha1_hash": "44651e2739b95d10eeb19c204af1a9d09804ae36",
	"title": "One man and his lasers",
	"llm_title": "",
	"authors": "",
	"file_creation_date": "0001-01-01T00:00:00Z",
	"file_modification_date": "0001-01-01T00:00:00Z",
	"file_size": 3474011,
	"plain_text": "One man and his lasers\r\nBy intrusiontruth\r\nPublished: 2023-07-07 · Archived: 2026-04-05 14:31:06 UTC\r\nArticle 1 left some tantalizing breadcrumbs about the manager of our main character organization from this article\r\nseries, Wuhan Xiaoruizhi. ‘What is he up to?’ We hear you cry. ‘And what is up with all the lasers?’\r\nSo, without further ado. Introducing: Deng Zhiyong.\r\nDeng at surface glance is the manager and CEO of Wuhan Xiaoruizhi Science and Technology. As a reminder, this\r\nis a supposed information/network security company which recruits linguists and hackers for tasks including big\r\ndata analysis, based in Wuhan Optics Valley.\r\nA deeper dive reveals that Deng also serves or has served on the Board of Directors of a number of companies\r\nincluding Wuhan Laser Power Supply Technology LLC, and Wuhan Technology Innovation Facilitation Center.\r\nFurthermore, he holds official titles in three Chinese-government affiliated organizations: Director of the Foreign\r\nExchange Center, Ministry of Science and Technology China; Director of the Hubei Wuhan China/Russian\r\nTechnologic Cooperation Center, and Chief of the Department of Steelworks Management Administration,\r\nDongxi, Wuhan. We have one busy man on our hands. \r\nAs our research continued, a clearer picture of Deng began to emerge. In particular, his side hustle as one of\r\nWuhan’s foremost laser-related experts. Most of the companies where he sits on the board and the government\r\ndepartments he serves have some kind of laser-flavor. Deng is also one of the official representatives of Optics\r\nValley, a geographical area of Wuhan which specializes in ‘opto-electronics’.  Below is Deng at the 9th\r\nInternational Laser Summit of Optics Valley of China. \r\nhttps://intrusiontruth.wordpress.com/2023/07/07/one-man-and-his-lasers\r\nPage 1 of 9\n\nWithin his laser-related activities, Deng seems to be most at ease in his role as the director of the Hubei Wuhan\r\nChina/Russian Technological Cooperation Center. Numerous articles and images show him hosting delegations\r\nfrom the Russian Laser association, visiting Russian laser companies, and patenting joint inventions of laser\r\ntechnology alongside Russian scientists.  \r\nhttps://intrusiontruth.wordpress.com/2023/07/07/one-man-and-his-lasers\r\nPage 2 of 9\n\nhttps://intrusiontruth.wordpress.com/2023/07/07/one-man-and-his-lasers\r\nPage 3 of 9\n\nBut this is not all. Fascinating open source trade data demonstrates that Wuhan Xiaoruizhi exported a number of\r\nshipments of laser technology to Russian laser production firms during 2016 and 2017.\r\nhttps://intrusiontruth.wordpress.com/2023/07/07/one-man-and-his-lasers\r\nPage 4 of 9\n\nhttps://intrusiontruth.wordpress.com/2023/07/07/one-man-and-his-lasers\r\nPage 5 of 9\n\nAt team I-T this information has generated quite a few questions. Props to Deng for his scientific achievements,\r\nbut how on earth does he have time for all this extra-curricular activity? What do lasers have to do with ‘network\r\nsecurity’ and hacking? With registered capital of only RMB250,000 (USD 36,000) Xiaoruizhi can hardly claim to\r\nbe big enough to be doing both. If Xiaoruizhi is a front company, why is it buying and selling real lasers with real\r\nmoney? \r\nWe let our imaginations run riot pondering these questions. Could it be that Deng, as the boss of a front company,\r\ndoesn’t have a real job, and so is free to pursue his laser-related dreams using Xiaoruizhi funds? Could Deng have\r\nbeen co-opted by the MSS while running an initially legitimate laser company and forced to turn it into an APT\r\nshell? Or could it be that Wuhan Xiaoruizhi and Deng himself serve as the front for a separate strand of Chinese\r\ngovernment activity…cozying up to Russian laser experts for the purposes of Chinese S\u0026T advantage.\r\nThe latter point reminds us of something we read recently……..\r\nNow, of course, we have no proof here. But given Xiaoruizhi’s links to a number of MSS officers and the\r\ngovernment links of its employees and Deng himself this is not beyond the realms of possibility.\r\nRegardless of whether or not Deng is really spying on Russia, surely his position as effectively Wuhan’s laser\r\nenvoy to Russia is somewhat undermined by the reported activity of APT31, which sat under his command (on\r\npaper at least) at Xiaoruizhi: \r\nhttps://intrusiontruth.wordpress.com/2023/07/07/one-man-and-his-lasers\r\nPage 6 of 9\n\nhttps://intrusiontruth.wordpress.com/2023/07/07/one-man-and-his-lasers\r\nPage 7 of 9\n\nPerhaps it is a case of Deng and APT31 keeping their friends close but their enemies closer. Or perhaps Deng’s\r\ninfluence was the only thing stopping APT31 spying on Russia previously and since breaking free to new front\r\ncompanies the group has had free rein. And perhaps we will never know. One thing is for sure though, there are\r\nsure to be more secrets hiding under the metaphorical rock of Wuhan Xiaoruizhi Science and Technology than we\r\nhave been able to tackle in this series. If you have anything to add to this or any part of our investigation, or to\r\nkick off a new one, please do get in touch. Our doors (inboxes) are always open to tips. \r\nFor now, though, friends of I-T, this is where we will leave you, until our next big investigation at least. It’s been a\r\nblast. Until next time.\r\nhttps://intrusiontruth.wordpress.com/2023/07/07/one-man-and-his-lasers\r\nPage 8 of 9\n\nDiscover more from Intrusion Truth\r\nSubscribe to get the latest posts sent to your email.\r\nSource: https://intrusiontruth.wordpress.com/2023/07/07/one-man-and-his-lasers\r\nhttps://intrusiontruth.wordpress.com/2023/07/07/one-man-and-his-lasers\r\nPage 9 of 9",
	"extraction_quality": 1,
	"language": "EN",
	"sources": [
		"Malpedia",
		"MISPGALAXY"
	],
	"references": [
		"https://intrusiontruth.wordpress.com/2023/07/07/one-man-and-his-lasers"
	],
	"report_names": [
		"one-man-and-his-lasers"
	],
	"threat_actors": [
		{
			"id": "aacd5cbc-604b-4b6e-9e58-ef96c5d1a784",
			"created_at": "2023-01-06T13:46:38.953463Z",
			"updated_at": "2026-04-10T02:00:03.159523Z",
			"deleted_at": null,
			"main_name": "APT31",
			"aliases": [
				"JUDGMENT PANDA",
				"BRONZE VINEWOOD",
				"Red keres",
				"Violet Typhoon",
				"TA412"
			],
			"source_name": "MISPGALAXY:APT31",
			"tools": [],
			"source_id": "MISPGALAXY",
			"reports": null
		},
		{
			"id": "9e6186dd-9334-4aac-9957-98f022cd3871",
			"created_at": "2022-10-25T15:50:23.357398Z",
			"updated_at": "2026-04-10T02:00:05.368552Z",
			"deleted_at": null,
			"main_name": "ZIRCONIUM",
			"aliases": [
				"APT31",
				"Violet Typhoon"
			],
			"source_name": "MITRE:ZIRCONIUM",
			"tools": null,
			"source_id": "MITRE",
			"reports": null
		},
		{
			"id": "74d9dada-0106-414a-8bb9-b0d527db7756",
			"created_at": "2025-08-07T02:03:24.69718Z",
			"updated_at": "2026-04-10T02:00:03.733346Z",
			"deleted_at": null,
			"main_name": "BRONZE VINEWOOD",
			"aliases": [
				"APT31 ",
				"BRONZE EXPRESS ",
				"Judgment Panda ",
				"Red Keres",
				"TA412",
				"VINEWOOD ",
				"Violet Typhoon ",
				"ZIRCONIUM "
			],
			"source_name": "Secureworks:BRONZE VINEWOOD",
			"tools": [
				"DropboxAES RAT",
				"HanaLoader",
				"Metasploit",
				"Mimikatz",
				"Reverse ICMP shell",
				"Trochilus"
			],
			"source_id": "Secureworks",
			"reports": null
		}
	],
	"ts_created_at": 1775434170,
	"ts_updated_at": 1775792145,
	"ts_creation_date": 0,
	"ts_modification_date": 0,
	"files": {
		"pdf": "https://archive.orkl.eu/44651e2739b95d10eeb19c204af1a9d09804ae36.pdf",
		"text": "https://archive.orkl.eu/44651e2739b95d10eeb19c204af1a9d09804ae36.txt",
		"img": "https://archive.orkl.eu/44651e2739b95d10eeb19c204af1a9d09804ae36.jpg"
	}
}