(The Canadian Press)

Russian hackers seeking to steal COVID-19 vaccine data: intel agencies

It is believed APT29, also known as ‘the Dukes’ or ‘Cozy Bear’ was responsible

Canadian, British and U.S. security services say hackers they believe are working for Russian intelligence have been trying to steal research on COVID-19 vaccines from organizations in all three countries and around the world.

Canada’s Communications Security Establishment says the malicious cyberactivities were very likely undertaken to pilfer information and intellectual property relating to the development and testing of vaccines for the novel coronavirus.

The cyberspy agency says the clandestine activity is hindering response efforts at a time when health-care experts and medical researchers need every available resource to help fight the pandemic.

The CSE’s Centre for Cyber Security assesses that APT29, also known as ”the Dukes” or “Cozy Bear,” was responsible, and almost certainly operates as part of Russian intelligence services.

“The group uses a variety of tools and techniques to predominantly target governmental, diplomatic, think-tank, health-care and energy targets for intelligence gain,” says a joint advisory from the CSE and its allies.

“APT29 is likely to continue to target organizations involved in COVID-19 vaccine research and development, as they seek to answer additional intelligence questions relating to the pandemic.”

This assessment is supported by partners at Britain’s Government Communications Headquarters’ National Cyber Security Centre, the U.S. National Security Agency, and the Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency.

The CSE is urging Canadian health organizations to review a technical advisory on the threat and to take any necessary actions to protect themselves. “We encourage them as well to contact the Cyber Centre if they suspect they have been targeted by cyberactors.”

The joint advisory says APT29 targeted COVID-19 vaccine research and development by scanning specific computer IP addresses of interest for vulnerabilities, a tactic that can help the group obtain login credentials to systems.

“This broad targeting potentially gives the group access to a large number of systems globally, many of which are unlikely to be of immediate intelligence value,” the advisory says.

“The group may maintain a store of stolen credentials in order to access these systems in the event that they become more relevant to their requirements in the future.”

By Jim Bronskill , The Canadian Press

Like us on Facebook and follow us on Twitter.

Want to support local journalism? Make a donation here.

Get local stories you won't find anywhere else right to your inbox.
Sign up here

Just Posted

QUIZ: How much do you know about British Columbia?

On this B.C. Day long weekend, put your knowledge of our province to the test

No new COVID-19 cases for the first time in weeks: Interior Health

Hospitalization also down to zero across the region

Chase RCMP seek information for decade-long missing person investigation

Shayne Murray Robinson’s truck was found abandoned by the Barriere RCMP detachment in 2010

Clearwater and Barriere welcome new reverend

Clearwater and Barriere have a new reverend, Bruce Chalmers, who will do… Continue reading

District of Barriere Utilities Manager reports to council on Barriere wells

District of Barriere Utilities Manager Ian Crosson presented a verbal report during… Continue reading

VIDEO: Otter pups learn to swim at B.C. wildlife rescue facility

Watch Critter Care’s Nathan Wagstaffe help seven young otters go for their first dip

Alleged impaired driver sparks small wildfire near Lytton after crash: B.C. RCMP

Good Samaritans prevented the blaze from getting out of control

Travel restrictions inspiring co-operation in border communities

Small border towns are asking for exemption to travel ban

B.C. First Nation adopts ‘digital twinning’ software to better manage territory

Software allows users to visualize what a mountain might look like if the trees on its slopes were logged

All inquiry recommendations implemented after fatal Port Hardy RCMP shooting: Ministry

The Independent Investigations Office of B.C. cleared the RCMP officers involved of wrongdoing

Leave your deets when dining: Restaurants taking personal info to trace COVID-19

Health officials say indoor dining presents a higher risk

Raptors kneel for both American and Canadian anthems ahead of tipoff

Majority of players have substituted their names on the backs of their jerseys with racial and social justice messages

Wild’s Mathew Dumba makes anti-racism speech, kneels ahead of Blackhawks vs. Oilers

Matt Dumba, 26, took to center ice to speak on behalf of fellow members of the Hockey Diversity Alliance

Most Read