(The Canadian Press)

Russian hackers seeking to steal COVID-19 vaccine data: intel agencies

It is believed APT29, also known as ‘the Dukes’ or ‘Cozy Bear’ was responsible

Canadian, British and U.S. security services say hackers they believe are working for Russian intelligence have been trying to steal research on COVID-19 vaccines from organizations in all three countries and around the world.

Canada’s Communications Security Establishment says the malicious cyberactivities were very likely undertaken to pilfer information and intellectual property relating to the development and testing of vaccines for the novel coronavirus.

The cyberspy agency says the clandestine activity is hindering response efforts at a time when health-care experts and medical researchers need every available resource to help fight the pandemic.

The CSE’s Centre for Cyber Security assesses that APT29, also known as ”the Dukes” or “Cozy Bear,” was responsible, and almost certainly operates as part of Russian intelligence services.

“The group uses a variety of tools and techniques to predominantly target governmental, diplomatic, think-tank, health-care and energy targets for intelligence gain,” says a joint advisory from the CSE and its allies.

“APT29 is likely to continue to target organizations involved in COVID-19 vaccine research and development, as they seek to answer additional intelligence questions relating to the pandemic.”

This assessment is supported by partners at Britain’s Government Communications Headquarters’ National Cyber Security Centre, the U.S. National Security Agency, and the Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency.

The CSE is urging Canadian health organizations to review a technical advisory on the threat and to take any necessary actions to protect themselves. “We encourage them as well to contact the Cyber Centre if they suspect they have been targeted by cyberactors.”

The joint advisory says APT29 targeted COVID-19 vaccine research and development by scanning specific computer IP addresses of interest for vulnerabilities, a tactic that can help the group obtain login credentials to systems.

“This broad targeting potentially gives the group access to a large number of systems globally, many of which are unlikely to be of immediate intelligence value,” the advisory says.

“The group may maintain a store of stolen credentials in order to access these systems in the event that they become more relevant to their requirements in the future.”

By Jim Bronskill , The Canadian Press

Like us on Facebook and follow us on Twitter.

Want to support local journalism? Make a donation here.

Get local stories you won't find anywhere else right to your inbox.
Sign up here

Just Posted

Rossland city council shuts down proposed duplex development on Redstone Drive

Dozens of residents voiced their opposition to the project during a public hearing on Aug. 10

Nelson Innovation Centre to host pitch competition

Deadline to apply for the first of three events is Sept. 24

Two new fires burning in the Arrow Lakes Region

One of the fires is burning approximately 30 kilometres northwest of Castlegar

Drug alert issued in Grand Forks after fentanyl, ‘benzos’ detected in test

They are advising additional care and to have drugs tested before using

Rossland Arena set to open with limited hours this October

Curling, figure skating, hockey and youth groups will be able to use arena when it opens

‘Don’t kill my mom’: Ryan Reynolds calls on young British Columbians to be COVID-smart

‘Deadpool’ celebrity responds to premier’s call for social influence support

Captain Horvat’s OT marker lifts Canucks to 4-3 win over Blues

Vancouver takes 2-0 lead in best-of-7 NHL playoff series with St. Louis

Widow of slain Red Deer doctor thanks community for support ahead of vigil

Fellow doctors, members of the public will gather for a physically-distanced vigil in central Alberta

Protesters showcase massive old yellow cedar as Port Renfrew area forest blockade continues

9.5-foot-wide yellow cedar measured by Ancient Forest Alliance campaigners in Fairy Creek watershed

Taking dog feces and a jackhammer to neighbourhood dispute costs B.C. man $16,000

‘Pellegrin’s actions were motivated by malice …a vindictive, pointless, dangerous and unlawful act’

Racist stickers at Keremeos pub leaves group uneasy and angry

The ‘OK’ hand gesture is a known hate-symbol

VIDEO: World responds to B.C. girl after pandemic cancels birthday party

Dozens of cards and numerous packages were delivered to six-year-old Charlie Manning

Expected fall peak of COVID-19 in Canada could overwhelm health systems: Tam

National modelling projections released Friday show an expected peak in cases this fall

Most Read