(The Canadian Press)

(The Canadian Press)

Russian hackers seeking to steal COVID-19 vaccine data: intel agencies

It is believed APT29, also known as ‘the Dukes’ or ‘Cozy Bear’ was responsible

Canadian, British and U.S. security services say hackers they believe are working for Russian intelligence have been trying to steal research on COVID-19 vaccines from organizations in all three countries and around the world.

Canada’s Communications Security Establishment says the malicious cyberactivities were very likely undertaken to pilfer information and intellectual property relating to the development and testing of vaccines for the novel coronavirus.

The cyberspy agency says the clandestine activity is hindering response efforts at a time when health-care experts and medical researchers need every available resource to help fight the pandemic.

The CSE’s Centre for Cyber Security assesses that APT29, also known as ”the Dukes” or “Cozy Bear,” was responsible, and almost certainly operates as part of Russian intelligence services.

“The group uses a variety of tools and techniques to predominantly target governmental, diplomatic, think-tank, health-care and energy targets for intelligence gain,” says a joint advisory from the CSE and its allies.

“APT29 is likely to continue to target organizations involved in COVID-19 vaccine research and development, as they seek to answer additional intelligence questions relating to the pandemic.”

This assessment is supported by partners at Britain’s Government Communications Headquarters’ National Cyber Security Centre, the U.S. National Security Agency, and the Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency.

The CSE is urging Canadian health organizations to review a technical advisory on the threat and to take any necessary actions to protect themselves. “We encourage them as well to contact the Cyber Centre if they suspect they have been targeted by cyberactors.”

The joint advisory says APT29 targeted COVID-19 vaccine research and development by scanning specific computer IP addresses of interest for vulnerabilities, a tactic that can help the group obtain login credentials to systems.

“This broad targeting potentially gives the group access to a large number of systems globally, many of which are unlikely to be of immediate intelligence value,” the advisory says.

“The group may maintain a store of stolen credentials in order to access these systems in the event that they become more relevant to their requirements in the future.”

By Jim Bronskill , The Canadian Press

Like us on Facebook and follow us on Twitter.

Want to support local journalism? Make a donation here.

Get local stories you won't find anywhere else right to your inbox.
Sign up here

Just Posted

Tim Schewe
Drivesmart column: Do you know someone who should not be driving?

We are currently living about 10 years longer than our ability to drive safely.

Chris Wilkinson
Chris Wilkinson column: Time to slow down to speed up

In a society where we learn (are forced?) to multitask like crazy

A COVID-19 exposure has been reported at Shawnigan Lake School. (Citizen file photo)
UPDATED: Island Health reports COVID-19 exposure at Shawnigan Lake School

Shawnigan Lake School has been added to the list of schools in… Continue reading

Peas are great to grow in the garden, but a trellis for them in an A frame shape will offer more portability and wind resistance. (Citizen file)
Mary Lowther column: Making a foldable pea trellis on winter agenda

My previous methods required starting anew every spring

Terrance Josephson of the Princeton Posse, at left, and Tyson Conroy of the Summerland Steam clash during a Junior B hockey game at the Summerland Arena in the early spring of 2020. (John Arendt - Summerland Review)
QUIZ: How much do you know about hockey?

Test your knowledge of Canada’s national winter sport

A woman injects herself with crack cocaine at a supervised consumption site Friday, Jan. 22, 2021 in Ottawa. THE CANADIAN PRESS/Adrian Wyld
Drug users at greater risk of dying as services scale back in second wave of COVID-19

It pins the blame largely on a lack of supports, a corrupted drug supply

Cannabis bought in British Columbia (Ashley Wadhwani/Black Press Media)
Is it time to start thinking about greener ways to package cannabis?

Packaging suppliers are still figuring eco-friendly and affordable packaging options that fit the mandates of Cannabis Regulations

Wet’suwet’en supporters and Coastal GasLink opponents continue to protest outside the B.C. Legislature in Victoria, B.C., on Thursday, February 27, 2020. THE CANADIAN PRESS/Chad Hipolito
‘We’re still in it’: Wet’suwet’en push forward on rights recognition

The 670-km Coastal GasLink pipeline was approved by B.C. and 20 elected First Nations councils on its path

The sky above Mt. Benson in Nanaimo is illuminated by flares as search and rescuers help an injured hiker down the mountain to a waiting ambulance. (Photo courtesy Nanaimo Search and Rescue)
Search plane lights up Nanaimo mountain with flares during icy rope rescue

Rescuers got injured hiker down Mt. Benson to a waiting ambulance Saturday night

Jennifer Cochrane, a Public Health Nurse with Prairie Mountain Health in Virden, administers the COVID-19 vaccine to Robert Farquhar with Westman Regional Laboratory, during the first day of immunizations at the Brandon COVID-19 vaccination supersite in Brandon, Man., on Monday, January 18, 2021. THE CANADIAN PRESS/Tim Smith - POOL
Top doctor urges Canadians to keep up with COVID measures, even as vaccines roll out

More than 776,606 vaccines have been administered so far

From the left: Midway RCMP Csts. Jonathan Stermscheg and Chris Hansen, Public Servant Leanne Mclaren and Cpl. Phil Peters. Pictured in the front are Mclaren’s dog, Lincoln and Peters’ dog, Angel. Photo courtesy of BC RCMP
B.C. Mounties commended for bringing firewood to elderly woman

Cpl. Phil Peters said he and detachment members acted after the woman’s husband went to hospital

Dr. Jerome Leis and Dr. Lynfa Stroud are pictured at Sunnybrook Hospital in Toronto on Thursday, January 21, 2021.THE CANADIAN PRESS/Frank Gunn
‘It wasn’t called COVID at the time:’ One year since Canada’s first COVID-19 case

The 56-year-old man was admitted to Toronto’s Sunnybrook Health Sciences Centre

An Uber driver’s vehicle is seen after the company launched service, in Vancouver, Friday, Jan. 24, 2020. Several taxi companies have lost a court bid to run Uber and Lyft off the road in British Columbia. THE CANADIAN PRESS/Darryl Dyck
Taxi companies lose court bid to quash Uber, Lyft approvals in British Columbia

Uber said in a statement that the ruling of the justice is clear and speaks for itself

Most Read