(The Canadian Press)

Russian hackers seeking to steal COVID-19 vaccine data: intel agencies

It is believed APT29, also known as ‘the Dukes’ or ‘Cozy Bear’ was responsible

Canadian, British and U.S. security services say hackers they believe are working for Russian intelligence have been trying to steal research on COVID-19 vaccines from organizations in all three countries and around the world.

Canada’s Communications Security Establishment says the malicious cyberactivities were very likely undertaken to pilfer information and intellectual property relating to the development and testing of vaccines for the novel coronavirus.

The cyberspy agency says the clandestine activity is hindering response efforts at a time when health-care experts and medical researchers need every available resource to help fight the pandemic.

The CSE’s Centre for Cyber Security assesses that APT29, also known as ”the Dukes” or “Cozy Bear,” was responsible, and almost certainly operates as part of Russian intelligence services.

“The group uses a variety of tools and techniques to predominantly target governmental, diplomatic, think-tank, health-care and energy targets for intelligence gain,” says a joint advisory from the CSE and its allies.

“APT29 is likely to continue to target organizations involved in COVID-19 vaccine research and development, as they seek to answer additional intelligence questions relating to the pandemic.”

This assessment is supported by partners at Britain’s Government Communications Headquarters’ National Cyber Security Centre, the U.S. National Security Agency, and the Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency.

The CSE is urging Canadian health organizations to review a technical advisory on the threat and to take any necessary actions to protect themselves. “We encourage them as well to contact the Cyber Centre if they suspect they have been targeted by cyberactors.”

The joint advisory says APT29 targeted COVID-19 vaccine research and development by scanning specific computer IP addresses of interest for vulnerabilities, a tactic that can help the group obtain login credentials to systems.

“This broad targeting potentially gives the group access to a large number of systems globally, many of which are unlikely to be of immediate intelligence value,” the advisory says.

“The group may maintain a store of stolen credentials in order to access these systems in the event that they become more relevant to their requirements in the future.”

By Jim Bronskill , The Canadian Press

Like us on Facebook and follow us on Twitter.

Want to support local journalism? Make a donation here.

Get local stories you won't find anywhere else right to your inbox.
Sign up here

Just Posted

COVID-19. (Courtesy of CDC).
Interior Health reports 12 additional COVID-19 cases

The total number of cases in the region is now at 644

The centre will open up for child care services on Nov. 2. File photo
Construction complete on Goat Mountain Child Care Centre

Centre staff will begin delivering child care services on Nov. 2

The house is located near two schools. Photo: Connor Trembley
Dog attack seriously injures young boy in Castlegar

Despite investigating the incident, city staff aren’t confirming if the dog has been put down

Kootenay West Candidates (L to R) Glen Byle (Conservative), Katrine Conroy (NDP), Andrew Duncan (Green), Corbin Kelley (Liberal), Fletcher Quince (Independent, Ed Varney (Independent).
Q&A with Kootenay West candidates: Affordable housing

Eighth in a series of Q&As with the candidates.

Environment Canada has issued a snow warning for the Kootenays on Friday. File photo
Environment Canada issues snow warning for Friday

Two-to-10 centimetres is expected to fall

Vancouver police reactivated the search for Jordan Naterer Thursday Oct. 22. Photo courtesy of VPD.
Mom of missing Manning Park hiker believes her son is waiting to come home

‘He’s going to come out of a helicopter and say ‘what took you so long?”

Environment Minister George Heyman, Premier John Horgan and Energy Minister Michelle Mungall announce that B.C. Hydro is proceeding with construction of the Site C dam, Dec. 11, 2017. (Tom Fletcher/Black Press)
Site C actions, costs won’t be known until after B.C. election, Horgan says

Peace River diverted for construction of reinforced dam base

One of the squirrels who ended up having their tails amputated after getting them stuck together with tree sap. (Facebook/Wild ARC)
Squirrels recovering from tail amputation after sap situation near Victoria

BC SPCA Wild ARC says squirrels will be released back into wild, fifth sibling was euthanized

More and more electric cars are on the road, but one Chevy Bolt owner was shocked to see how much his BC Hydro bill skyrocketed once he started charging the vehicle. (Black Press file photo)
Lower Mainland man sees significant spike in BC Hydro bill after buying electrical vehicle

An increase should be expected, but Brian Chwiendacz experienced a 200-plus per cent hike

The Anonymous YVR is an Instagram page that reviews restaurants and other establishments around B.C. based on how well they adhere to COVID-19 rules. (Instagram)
Anonymous Instagram page reviews COVID-19 safety measures at B.C. businesses

There are a number of public health orders various types of establishments must follow to slow virus’s spread

Jordan Naterer, an electrical engineer from Vancouver, was last seen Saturday Oct. 10. (Facebook photo)
Search efforts to resume for missing Manning Park hiker; Trudeau speaks on case

PM says he’ll do what he can to ‘nudge’ efforts to find Jordan Naterer, yet has little leverage locally

Most Read