(The Canadian Press)

Russian hackers seeking to steal COVID-19 vaccine data: intel agencies

It is believed APT29, also known as ‘the Dukes’ or ‘Cozy Bear’ was responsible

Canadian, British and U.S. security services say hackers they believe are working for Russian intelligence have been trying to steal research on COVID-19 vaccines from organizations in all three countries and around the world.

Canada’s Communications Security Establishment says the malicious cyberactivities were very likely undertaken to pilfer information and intellectual property relating to the development and testing of vaccines for the novel coronavirus.

The cyberspy agency says the clandestine activity is hindering response efforts at a time when health-care experts and medical researchers need every available resource to help fight the pandemic.

The CSE’s Centre for Cyber Security assesses that APT29, also known as ”the Dukes” or “Cozy Bear,” was responsible, and almost certainly operates as part of Russian intelligence services.

“The group uses a variety of tools and techniques to predominantly target governmental, diplomatic, think-tank, health-care and energy targets for intelligence gain,” says a joint advisory from the CSE and its allies.

“APT29 is likely to continue to target organizations involved in COVID-19 vaccine research and development, as they seek to answer additional intelligence questions relating to the pandemic.”

This assessment is supported by partners at Britain’s Government Communications Headquarters’ National Cyber Security Centre, the U.S. National Security Agency, and the Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency.

The CSE is urging Canadian health organizations to review a technical advisory on the threat and to take any necessary actions to protect themselves. “We encourage them as well to contact the Cyber Centre if they suspect they have been targeted by cyberactors.”

The joint advisory says APT29 targeted COVID-19 vaccine research and development by scanning specific computer IP addresses of interest for vulnerabilities, a tactic that can help the group obtain login credentials to systems.

“This broad targeting potentially gives the group access to a large number of systems globally, many of which are unlikely to be of immediate intelligence value,” the advisory says.

“The group may maintain a store of stolen credentials in order to access these systems in the event that they become more relevant to their requirements in the future.”

By Jim Bronskill , The Canadian Press

Like us on Facebook and follow us on Twitter.

Want to support local journalism? Make a donation here.

Get local stories you won't find anywhere else right to your inbox.
Sign up here

Just Posted

A view of proposed seniors housing on Vernon St. Illustration: City of Nelson/ Vendure Retirement Communities
Nelson seniors housing project to start construction in the spring

Private development on Vernon Street will provide assisted living services as well as housing

The fundraiser is anticipated to occur again next year. Photo: Deb Penner
Castlegar Blue Barn Pet staff raise $15,579 for charities

Staff decided to hold fundraiser after they had to cancel their pet festival this fall

NAV CANDA is considering closing its station at the West Kootenay Regional Airport. Photo: Betsy Kline
Nav Canada considering closing station at West Kootenay Regional Airport

The organization is conducting a service review at Castlegar’s airport

test tube with the blood test is on the table next to the documents. Positive test for coronavirus covid-19. The concept of fighting a dangerous Chinese disease.
Interior Health records third COVID-19 death

A new community outbreak was reported at Okanagan Men’s Centre in Lake Country

Enrolment is down across the entire district. File photo
SD 20 experiences small decline in student enrolment

District staff said more parents are homeschooling their children this year due to COVID-19 crisis

A woman wears a face mask and plastic gloves while browsing books as a sticker on the floor indicates a one-way direction of travel between shelves of books at the Vancouver Public Library’s central branch, after it and four other branches reopened with limited services, in Vancouver, on Tuesday, July 14, 2020. (THE CANADIAN PRESS/Darryl Dyck)
B.C. reports 234 new COVID cases, 1 death of senior who had attended small birthday party

Roughly 5,700 people are isolating due to being exposed to a confirmed case

A nurse performs a test on a patient at a drive-in COVID-19 clinic in Montreal, on Wednesday, October 21, 2020. THE CANADIAN PRESS/Paul Chiasson
Interior Health reports seven more COVID-19 cases

Eighty-nine cases remain active, none of whom are currently hospitalized

Join Black Press Media and Do Some Good

Pay it Forward program supports local businesses in their community giving

Is it time to start thinking about greener ways to package cannabis?

Packaging suppliers are still figuring eco-friendly and affordable packaging options that fit the mandates of Cannabis Regulations

Burnaby RCMP responded to a dine-and-dash suspect who fell through a ceiling in March 2020. (RCMP handout)
VIDEO: Suspected dine-and-dasher falls through ceiling of Burnaby restaurant

A woman believed to be dashing on her restaurant bill fell through the kitchen ceiling

A can of Canada Dry Ginger Ale is shown in Toronto on Thursday Oct. 29, 2020. The maker of Canada Dry Ginger Ale has agreed to pay over $200,000 to settle a class-action lawsuit launched by a B.C. man who alleged he was misled by marketing suggesting the soda had medicinal benefits. THE CANADIAN PRESS/Joseph O’Connal
B.C. man’s lawsuit over marketing of Canada Dry ginger ale settled for $200K

Soda’s maker, Canada Dry Mott’s Inc., denied the allegations and any liability

Vancouver Island-based Wilson’s Transportation has expanded to fill some of the routes left unserviced by Greyhound as of Nov. 1, 2018. (Black Press files)
B.C. bus companies say they need help to survive COVID-19

Like airlines, motor coaches have lost most of their revenue

A deer was spotted in October 2020 in Prince Rupert, B.C., with a bright pink yoga ball stuck in its antlers. (Kayla Vickers/Chronicles Of Hammy The Deer Official Page)
Hammy 2.0? Prince Rupert deer spotted with bright pink yoga ball stuck in antlers

The BC Conservation Officer Service is aware of the deer roaming around the city

RCMP. (Phil McLachlan - Black Press Media)
Kelowna Mountie hit with 2nd lawsuit in 2 months for alleged assault

Const. Julius Prommer is accused of breaking a woman’s knee during while responding to a noise complaint

Most Read