(The Canadian Press)

Russian hackers seeking to steal COVID-19 vaccine data: intel agencies

It is believed APT29, also known as ‘the Dukes’ or ‘Cozy Bear’ was responsible

Canadian, British and U.S. security services say hackers they believe are working for Russian intelligence have been trying to steal research on COVID-19 vaccines from organizations in all three countries and around the world.

Canada’s Communications Security Establishment says the malicious cyberactivities were very likely undertaken to pilfer information and intellectual property relating to the development and testing of vaccines for the novel coronavirus.

The cyberspy agency says the clandestine activity is hindering response efforts at a time when health-care experts and medical researchers need every available resource to help fight the pandemic.

The CSE’s Centre for Cyber Security assesses that APT29, also known as ”the Dukes” or “Cozy Bear,” was responsible, and almost certainly operates as part of Russian intelligence services.

“The group uses a variety of tools and techniques to predominantly target governmental, diplomatic, think-tank, health-care and energy targets for intelligence gain,” says a joint advisory from the CSE and its allies.

“APT29 is likely to continue to target organizations involved in COVID-19 vaccine research and development, as they seek to answer additional intelligence questions relating to the pandemic.”

This assessment is supported by partners at Britain’s Government Communications Headquarters’ National Cyber Security Centre, the U.S. National Security Agency, and the Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency.

The CSE is urging Canadian health organizations to review a technical advisory on the threat and to take any necessary actions to protect themselves. “We encourage them as well to contact the Cyber Centre if they suspect they have been targeted by cyberactors.”

The joint advisory says APT29 targeted COVID-19 vaccine research and development by scanning specific computer IP addresses of interest for vulnerabilities, a tactic that can help the group obtain login credentials to systems.

“This broad targeting potentially gives the group access to a large number of systems globally, many of which are unlikely to be of immediate intelligence value,” the advisory says.

“The group may maintain a store of stolen credentials in order to access these systems in the event that they become more relevant to their requirements in the future.”

By Jim Bronskill , The Canadian Press

Like us on Facebook and follow us on Twitter.

Want to support local journalism? Make a donation here.

Get local stories you won't find anywhere else right to your inbox.
Sign up here

Just Posted

Person in serious condition after potential drowning in Abbotsford

Individual airlifted after incident at a home on Tuesday afternoon

Gangster Jarrod Bacon released from prison for third time

Parole board continues to express concerns about Bacon’s behaviour

UPDATE: Charges laid after boy, 7, allegedly abducted by mom in Abbotsford

Child returned to dad in Langley, charges now laid against mom and partner

Drive-Thru Safari a success for Abbotsford Agrifair

Organizers state that over 1,250 vehicles took in the event over the weekend

Banter ice cream shop arrives in Abbotsford

Jubilee Park location has proven popular for new establishment

B.C. records 146 new COVID-19 cases through long weekend

More that 28 people tested positive for the virus each day since Friday

Canucks tame Minnesota Wild 4-3 to even NHL qualifying series

J.T. Miller leads Vancouver with goal and an assist

Cyclist in hospital after being hit by load of lumber hanging from truck on B.C. highway

A man is in hospital with broken ribs, punctured lung and a broken clavicle and scapula

COVID-19 vaccine efforts provide hope but no silver bullet to stop pandemic: Tam

There are more than two dozen vaccines for COVID-19 in clinical trials around the world

Staff member tests positive for COVID-19 at Maple Ridge Seniors Village

Fraser Health is on site implementing outbreak protocols at the seniors care facility

Two people die in propane heated outdoor shower near Princeton

Couple was attending a long weekend gathering

Racism in B.C. healthcare: Deadline for First Nations survey coming up on Aug. 6

Survey comes after hospital staff allegedly played a blood alcohol guessing game

‘We want to help’: As overdose deaths spike, beds lay empty at long-term Surrey rehab centre

John Volken Academy searching for ‘students’ to enlist in two-year residential treatment program

Study shines light on what makes LGBTQ+ youth feel safe in a community

The study goes beyond looking at school or family supports

Most Read