(The Canadian Press)

Russian hackers seeking to steal COVID-19 vaccine data: intel agencies

It is believed APT29, also known as ‘the Dukes’ or ‘Cozy Bear’ was responsible

Canadian, British and U.S. security services say hackers they believe are working for Russian intelligence have been trying to steal research on COVID-19 vaccines from organizations in all three countries and around the world.

Canada’s Communications Security Establishment says the malicious cyberactivities were very likely undertaken to pilfer information and intellectual property relating to the development and testing of vaccines for the novel coronavirus.

The cyberspy agency says the clandestine activity is hindering response efforts at a time when health-care experts and medical researchers need every available resource to help fight the pandemic.

The CSE’s Centre for Cyber Security assesses that APT29, also known as ”the Dukes” or “Cozy Bear,” was responsible, and almost certainly operates as part of Russian intelligence services.

“The group uses a variety of tools and techniques to predominantly target governmental, diplomatic, think-tank, health-care and energy targets for intelligence gain,” says a joint advisory from the CSE and its allies.

“APT29 is likely to continue to target organizations involved in COVID-19 vaccine research and development, as they seek to answer additional intelligence questions relating to the pandemic.”

This assessment is supported by partners at Britain’s Government Communications Headquarters’ National Cyber Security Centre, the U.S. National Security Agency, and the Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency.

The CSE is urging Canadian health organizations to review a technical advisory on the threat and to take any necessary actions to protect themselves. “We encourage them as well to contact the Cyber Centre if they suspect they have been targeted by cyberactors.”

The joint advisory says APT29 targeted COVID-19 vaccine research and development by scanning specific computer IP addresses of interest for vulnerabilities, a tactic that can help the group obtain login credentials to systems.

“This broad targeting potentially gives the group access to a large number of systems globally, many of which are unlikely to be of immediate intelligence value,” the advisory says.

“The group may maintain a store of stolen credentials in order to access these systems in the event that they become more relevant to their requirements in the future.”

By Jim Bronskill , The Canadian Press

Like us on Facebook and follow us on Twitter.

Want to support local journalism? Make a donation here.

Just Posted

Island teachers say they need more time to prepare for fall reopening

Greater Victoria Teachers’ Association says class schedules need to be reworked for cohort model

Frustration grows in Ucluelet as locked gate puts school garden in peril

‘You walk by there and it’s just dead. Everything’s dry and yelling for water’

Canada geese a scourge on Greater Victoria farmers

Immediate and long-term solutions needed, says Saanich farmer

OPINION: Pushing for the gold star might not give you what you think

Purusing the prefect GPA is no guarantee of success in life

UPDATE: RCMP use spike belts to end car chase — man in custody

The driver was arrested at the scene a short distance from his vehicle

371 British Columbians battling COVID-19, health officials confirm

Thursday (Aug. 6) saw a second straight day of nearly 50 new confirmed cases

Victoria motorcyclist airlifted after collision in Cobble Hill

Residents describe intersection of Telegraph and Hutchinson as “dangerous” and “problematic”

Police seek witnesses to downtown Victoria pellet gun shootings

One pellet gun seized, investigation continues

Statistics Canada says country gained 419,000 jobs in July

National unemployment rate was 10.9 per cent in July, down from the 12.3 per cent recorded in June

Canada plans $3.6 billion in retaliatory tariffs on U.S. in aluminium dispute

The new Canada-United States-Mexico Agreement that replaced NAFTA went into force on July 1

Canada ‘profoundly concerned’ over China death sentence for citizen in drug case

Police later confiscated more than 120 kilograms of the drug from Xu Weihong’s home

Greater Victoria real estate sales numbers tell two stories for July

Real estate board president Sandi-Jo Ayers talks about pent-up spring demand, low inventory

North Island Hospital Campbell River’s campus has a new food forest

And the hospital staff is encouraging the community to come ‘nibble’ on the produce

Most Read