
The person at the center of this case
Multiple victims including U.S. government agencies, religious organizations, foreign governments, news organizations, and political dissidents
Justice for Multiple victims including U.S. government agencies, religious organizations, foreign governments, news organizations, and political dissidents — the trail went cold in 2026, but the truth hasn't.
Start here
How many i-Soon employees were directly involved in the cyberattack operations, and what were their specific roles?
What specific vulnerabilities and techniques did i-Soon use to compromise email accounts and government systems?
Were there other operational bases or facilities used by i-Soon beyond the Shanghai headquarters?
From 2016 to 2023, the Chinese technology company Anxun (i-Soon) and its personnel allegedly conducted widespread cyberattacks on email accounts, cell phones, servers, and websites under direction of China's Ministry of State Security and Ministry of Public Security. Targets included a major U.S. religious organization, government agencies, foreign ministries in Asia, news organizations, and PRC dissidents and critics. The case remains under investigation as authorities work to identify all victims and perpetrators involved in this sophisticated state-sponsored hacking operation.
Try asking
A one-time $10 claim transfers this imported case workspace to your account. You get 10 uploads for this case, 25 daily AI questions for this case, and public tips with files route to you.
This does not start a subscription. When the included limits are reached, the Personal plan unlocks more workspace capacity.
Beyond the top three above — each detail below could be the thread that pulls this case open.
Which PRC MSS and MPS officials directly coordinated with and directed i-Soon's hacking activities?
What financial transactions and payment records exist between i-Soon and Chinese government agencies?
Even the smallest detail could be the key to solving this case.
Official wording
Conspiracy to Commit Computer Fraud; Conspiracy to Commit Wire Fraud Caution: From at least in or around 2016, through in or around 2023, the Chinese technology company Anxun (i-Soon) Information Technology Co., Ltd., aka “i-Soon” (“i-Soon”), and its personnel, allegedly engaged in numerous and widespread compromises of email accounts, cell phones, servers, and websites at the direction of, and in close coordination with, the People's Republic of China's (PRC) MSS and MPS. Incorporated in or around 2010, in Shanghai, China, i-Soon allegedly profited and grew as a key player in the PRC’s hacker-for-hire ecosystem.
At certain times, i-Soon had three (3) teams of employees allegedly working to attack computer systems. i-Soon employees allegedly compromised and attempted to compromise victims across the globe, including a large religious organization in the United States, critics and dissidents of the PRC government, a state legislative body, United States government agencies, the ministries of foreign affairs of multiple governments in Asia, and news organizations.
Anxun (i-Soon) Information Technology Co., Ltd. incorporated in Shanghai, China
From at least 2016, i-Soon allegedly began coordinated cyberattacks under PRC MSS and MPS direction
Alleged conspiracy activities continued through approximately 2023