(The Canadian Press)

Russian hackers seeking to steal COVID-19 vaccine data: intel agencies

It is believed APT29, also known as ‘the Dukes’ or ‘Cozy Bear’ was responsible

Canadian, British and U.S. security services say hackers they believe are working for Russian intelligence have been trying to steal research on COVID-19 vaccines from organizations in all three countries and around the world.

Canada’s Communications Security Establishment says the malicious cyberactivities were very likely undertaken to pilfer information and intellectual property relating to the development and testing of vaccines for the novel coronavirus.

The cyberspy agency says the clandestine activity is hindering response efforts at a time when health-care experts and medical researchers need every available resource to help fight the pandemic.

The CSE’s Centre for Cyber Security assesses that APT29, also known as ”the Dukes” or “Cozy Bear,” was responsible, and almost certainly operates as part of Russian intelligence services.

“The group uses a variety of tools and techniques to predominantly target governmental, diplomatic, think-tank, health-care and energy targets for intelligence gain,” says a joint advisory from the CSE and its allies.

“APT29 is likely to continue to target organizations involved in COVID-19 vaccine research and development, as they seek to answer additional intelligence questions relating to the pandemic.”

This assessment is supported by partners at Britain’s Government Communications Headquarters’ National Cyber Security Centre, the U.S. National Security Agency, and the Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency.

The CSE is urging Canadian health organizations to review a technical advisory on the threat and to take any necessary actions to protect themselves. “We encourage them as well to contact the Cyber Centre if they suspect they have been targeted by cyberactors.”

The joint advisory says APT29 targeted COVID-19 vaccine research and development by scanning specific computer IP addresses of interest for vulnerabilities, a tactic that can help the group obtain login credentials to systems.

“This broad targeting potentially gives the group access to a large number of systems globally, many of which are unlikely to be of immediate intelligence value,” the advisory says.

“The group may maintain a store of stolen credentials in order to access these systems in the event that they become more relevant to their requirements in the future.”

By Jim Bronskill , The Canadian Press

Like us on Facebook and follow us on Twitter.

Want to support local journalism? Make a donation here.

Get local stories you won't find anywhere else right to your inbox.
Sign up here

Just Posted

Province, feds, Wet’suwet’en announce progress in MOU talks

Community engagement process launched to implement northern B.C. First Nation’s rights and title

Dogs are matched with the person, not the person matched to the dog – Prince Rupert SPCA

Prince Rupert SPCA does their due diligence in adopting dogs to suitable human companions

Photo Gallery: Memorial totem pole raising in Prince Rupert

The memorial pole stands in memory of Prince Rupert carvers mother on Second Ave. West

Province, feds, Wet’suwet’en announce progress in MOU talks

External community engagement process launched to help implement Wet’suwet’en rights and title

Memorial totem pole raised in Prince Rupert

The memorial pole was a two year project led by local carver Lyle Campbell

STANDING TALL: Forestry workers meet the challenges, remain hopeful

A look at the forest sector in B.C. – and those hoping for the best – amid mill curtailments

Missed rent payments ‘cause of COVID-19? You have until July 2021 to pay up

Each monthly instalment must be paid on the same date the rent is due.

U.S.-Canada pandemic border restrictions extended into September

‘We will continue to keep our communities safe,’ says Public Safety Minister Bill Blair

578 British Columbians currently infected with COVID-19

Seventy-eight new cases confirmed in past 24 hours

WE Charity registers as lobbyist, lays off staff, looking to sell real estate

WE Charity said its financial position has been greatly affected by the COVID-19 pandemic

Conservation seizes fawn illegally kept captive in Vancouver Island home

A Comox Valley resident charged and fined under the Wildlife Act

Pandemic could be driving more parents to get on board with flu shot: study

University of B.C. study gauges willingness for parents to vaccinate children for influenza

Watchdog clears Okanagan RCMP in death of man after arrest over alleged stolen pizzas

The man died in hospital after having difficulty breathing and broken ribs

Have you seen Berleen? B.C. pig destined for sanctuary goes missing

Berleen was less than two weeks from travelling to Manitoba when she vanished

Most Read