CrimeOwl AI logoCrimeOwl AI
CasesBlogPricingAboutLaw Enforcement
  1. Home
  2. /
  3. Cases
  4. /
  5. ZHANG SHILONG
Back to CasesMore Cases
Zhang Shilong (aka 'Baobeilong,' 'Zhang Jianguo,' 'Atreexp')

The person at the center of this case

Zhang Shilong (aka 'Baobeilong,' 'Zhang Jianguo,' 'Atreexp')

Case
#784
SourceFBI WantedUpdated Mar 15, 2026
United States District Court for the Southern District of New York; FBI Cyber Division
Cold Case · Open
7 years waiting · since 2018

ZHANG SHILONG

Justice for Zhang Shilong (aka 'Baobeilong,' 'Zhang Jianguo,' 'Atreexp') — the trail went cold in 2018, but the truth hasn't.

Start here

Key leads to think about

🔍
evidence
Lead #1

How many additional victim organizations beyond the 45+ identified companies were compromised by APT 10 during the 2006-2018 campaign?

🎯
suspect
Lead #2

What is Zhang Shilong's current location and status given the indictment, and has he been apprehended or remains at large?

💡
clue
Lead #3

What specific intellectual property and defense technology information was stolen from the targeted aviation, space, and maritime companies?

Zhang Shilong, a Chinese hacker operating under multiple aliases including 'Baobeilong' and 'Atreexp,' was indicted on December 17, 2018, for leading a sophisticated cyber espionage campaign as part of the APT 10 hacking group. From 2006 through 2018, he and his associate targeted over 45 commercial and defense companies, managed service providers, and U.S. government agencies across multiple countries, stealing intellectual property and sensitive data from industries including aviation, space technology, and maritime sectors. The case remains significant as a landmark cybercrime prosecution highlighting state-sponsored intrusions, with ongoing investigative interest in identifying additional victims and understanding the full scope of compromised systems and stolen information.

Case
#784
SourceFBI WantedUpdated Mar 15, 2026
United States District Court for the Southern District of New York; FBI Cyber Division

Try asking

Claim this imported case

A one-time $10 claim transfers this imported case workspace to your account. You get 10 uploads for this case, 25 daily AI questions for this case, and public tips with files route to you.

10 uploads25 AI questions/day

This does not start a subscription. When the included limits are reached, the Personal plan unlocks more workspace capacity.

More leads to consider

Beyond the top three above — each detail below could be the thread that pulls this case open.

👁️
witness
Lead #4

Which managed service providers were compromised and how many of their global clients across 12+ countries were affected by the intrusions?

🔍
evidence
Lead #5

How was the personally identifiable information of over 100,000 Navy personnel obtained and what safeguards have been implemented since?

Have information about any of these leads?

Even the smallest detail could be the key to solving this case.

Official wording

Source Narrative

Conspiracy to Commit Computer Intrusions; Conspiracy to Commit Wire Fraud; Aggravated Identity Theft Caution: On December 17, 2018, a grand jury in the United States District Court for the Southern District of New York indicted ZHANG SHILONG, aka “Baobeilong,” aka “Zhang Jianguo,” aka “Atreexp," and ZHU HUA , aka “Afwar,” aka “CVNX,” aka “Alayos,” aka “Godkiller,” two members of a hacking group operating in China known in the cybersecurity community as Advanced Persistent Threat 10 (the “ APT 10 Group ”), with conspiracy to commit computer intrusion, conspiracy to commit wire fraud, and aggravated identity theft. The defendants worked for Huaying Haitai Science and Technology Development Company located in Tianjin, China, and they acted in association with the Chinese Ministry of State Security’s Tianjin State Security Bureau.

As alleged in the Indictment, from at least 2006 through 2018, the defendants conducted extensive campaigns of global intrusions into computer systems aiming to steal, among other data, intellectual property and confidential business and technological information from more than at least 45 commercial and defense technology companies in at least a dozen states, managed service providers (“MSP”), which are companies that remotely manage the information technology infrastructure of businesses and governments around the world, and U.S. government agencies.

The victim companies targeted by ZHANG SHILONG and ZHU HUA were involved in a diverse array of commercial activity, industries, and technologies, including aviation, space and satellite technology, manufacturing technology, oil and gas exploration, production technology, communications technology, computer processor technology, and maritime technology. In addition, for example, the APT 10 Group’s campaign compromised the data of an MSP and certain of its clients located in at least 12 countries including Brazil, Canada, Finland, France, Germany, India, Japan, Sweden, Switzerland, the United Arab Emirates, the United Kingdom, and the United States.

The APT 10 group also compromised computer systems containing information regarding the United States Department of the Navy and stole the personally identifiable information of more than 100,000 Navy personnel.

Timeline of Events

🕵️
2006

Campaign begins

Extended cyber intrusion campaign begins targeting commercial and defense technology companies globally

🕵️
2018-12-17

Grand jury indictment

Zhang Shilong indicted in U.S. District Court for the Southern District of New York for conspiracy to commit computer intrusions, wire fraud, and aggravated identity theft

Key Locations
Interactive map showing important locations related to this case

Case Information

Incident:January 1, 2006
Last Updated:September 10, 2026

Leave a comment

Comments

Case Information

Incident:January 1, 2006
Last Updated:September 10, 2026