Risky Bulletin Newsletter
July 29, 2026
Risky Bulletin: New Chinese cyber contractor identified
Presented by
News Editor
The cyber sleuths at Intrusion Truth have uncovered a new secretive Chinese IT company that appears to work as a cyber contractor and tool developer for Chinese state-sponsored hacking operations.
Online clues appear to suggest that Guangdong Chanming appears to have developed RedRelay (aka ORBWEAVER), an ORB network (aka proxy botnet) that was used by almost a dozen Chinese APT groups to hide the origin of their attacks.
The list includes the likes of APT15, Red Vulture, Ke3chang, Vixen Panda, Playful Dragon, Nylon Typhoon, and others.