Image Alt Text

News

Hackers targeting Covid-19 vaccine supply chain, IBM warns

December 3, 2020 11:31 PM


Hackers are targeting the coronavirus vaccine supply chain, IBM warned Thursday, saying it had uncovered a series of cyber attacks against companies involved in the effort to distribute doses around the world.

It was "unclear" if the attacks were successful, IBM said, adding that they were potentially carried out by state actors.

"Our team recently uncovered a global phishing campaign targeting organizations associated with a COVID-19 cold chain," Claire Zaboeva and Melissa Frydrych, analysts for IBM X-Force, a cyber security working group, wrote in a blog post.  

The European Commission's Directorate-General for Taxation and Customs Union was one target, as were energy and IT companies based in Germany, Italy, the Czech Republic, South Korea and Taiwan.

The hackers impersonated an executive from Haier Biomedical, a Chinese-owned cold chain supply company working with the World Health Organization and the United Nations, IBM said.

"Disguised as this employee, the adversary sent phishing emails to organizations believed to be providers of material support to meet transportation needs within the COVID-19 cold chain," Zaboeva and Frydrych wrote.

The purpose "may have been to harvest credentials, possibly to gain future unauthorized access to corporate networks and sensitive information relating to the COVID-19 vaccine distribution."

Some of the vaccines being developed against Covid-19 must be stored at temperatures well below that of a normal fridge. Distribution, therefore, requires specialized logistics companies such as Haier Biomedical.

IBM said it could not identify those behind the attacks -- but that the precision of the operation signals "the potential hallmarks of nation-state tradecraft."

"Without a clear path to a cash-out, cyber criminals are unlikely to devote the time and resources required to execute such a calculated operation with so many interlinked and globally distributed targets," Zaboeva and Frydrych wrote. 

The US federal cyber security agency, CISA, said the IBM report should be taken seriously by organizations involved in the vaccine supply chain.

"CISA encourages all organizations involved in vaccine storage and transport to harden attack surfaces, particularly in cold storage operation, and remain vigilant against all activity in this space," Josh Corman, a CISA strategist, told AFP. 

 

 



Most Read

  1. Hackers steal data of over 2m Pakistanis from restaurants Hackers steal data of over 2m Pakistanis from restaurants
  2. Naseem Shah's fitness in doubt for World Cup after medical report Naseem Shah's fitness in doubt for World Cup after medical report
  3. 26 int’l companies show interest in acquiring Islamabad airport on lease 26 int’l companies show interest in acquiring Islamabad airport on lease
  4. Punjab issues Rs32,000 minimum salary notification Punjab issues Rs32,000 minimum salary notification
  5. ANP leader gunned down in Balochistan ANP leader gunned down in Balochistan
  6. Shaheen Afridi and Ansha's Mehndi ceremony catches attention on social media Shaheen Afridi and Ansha's Mehndi ceremony catches attention on social media

Opinion

  1. Chengdu's Hidden Treasures: Tinjiang River and Zhanqi Village - A Journey of Discovery and connection
    Chengdu's Hidden Treasures: Tinjiang River and Zhanqi Village - A Journey of Discovery and connection

    By Ali Ramay

  2. India’s invasion of Kashmir is violation of UN Charter
    India’s invasion of Kashmir is violation of UN Charter

    By Dr Ghulam Nabi Fai

  3. World Suicide Prevention Day: Creating Hope Through Action
    World Suicide Prevention Day: Creating Hope Through Action

    By Dr Asif Channer

  4. Gender equality: A pre-requisite for a balanced society
    Gender equality: A pre-requisite for a balanced society

    By Mehak Sabir

  5. Time to move on and build a better Pakistan
    Time to move on and build a better Pakistan

    By Murtaza Rafiq Bhutto