News

Hackers targeting Covid-19 vaccine supply chain, IBM warns

December 3, 2020 11:31 PM


Twitter Share Facebook Share WhatsApp Share

Hackers are targeting the coronavirus vaccine supply chain, IBM warned Thursday, saying it had uncovered a series of cyber attacks against companies involved in the effort to distribute doses around the world.

It was "unclear" if the attacks were successful, IBM said, adding that they were potentially carried out by state actors.

"Our team recently uncovered a global phishing campaign targeting organizations associated with a COVID-19 cold chain," Claire Zaboeva and Melissa Frydrych, analysts for IBM X-Force, a cyber security working group, wrote in a blog post.  

The European Commission's Directorate-General for Taxation and Customs Union was one target, as were energy and IT companies based in Germany, Italy, the Czech Republic, South Korea and Taiwan.

The hackers impersonated an executive from Haier Biomedical, a Chinese-owned cold chain supply company working with the World Health Organization and the United Nations, IBM said.

"Disguised as this employee, the adversary sent phishing emails to organizations believed to be providers of material support to meet transportation needs within the COVID-19 cold chain," Zaboeva and Frydrych wrote.

The purpose "may have been to harvest credentials, possibly to gain future unauthorized access to corporate networks and sensitive information relating to the COVID-19 vaccine distribution."

Some of the vaccines being developed against Covid-19 must be stored at temperatures well below that of a normal fridge. Distribution, therefore, requires specialized logistics companies such as Haier Biomedical.

IBM said it could not identify those behind the attacks -- but that the precision of the operation signals "the potential hallmarks of nation-state tradecraft."

"Without a clear path to a cash-out, cyber criminals are unlikely to devote the time and resources required to execute such a calculated operation with so many interlinked and globally distributed targets," Zaboeva and Frydrych wrote. 

The US federal cyber security agency, CISA, said the IBM report should be taken seriously by organizations involved in the vaccine supply chain.

"CISA encourages all organizations involved in vaccine storage and transport to harden attack surfaces, particularly in cold storage operation, and remain vigilant against all activity in this space," Josh Corman, a CISA strategist, told AFP. 

 

 



Most Read

  1. Five more children die as death toll from measles in Dadu reaches 27 Five more children die as death toll from measles in Dadu reaches 27
  2. Sharmin Segal says NO to Salman Khan's marriage proposal Sharmin Segal says NO to Salman Khan's marriage proposal
  3. Zuhab Khan and Wania Nadeem's love story culminates in heartfelt Nikah ceremony Zuhab Khan and Wania Nadeem's love story culminates in heartfelt Nikah ceremony
  4. Ahmed Ali Akbar drops clue of ‘Parizaad’ Season 2 Ahmed Ali Akbar drops clue of ‘Parizaad’ Season 2
  5. Fan kisses Durefishan Saleem at Ishq Murshid cinema screening Fan kisses Durefishan Saleem at Ishq Murshid cinema screening
  6. 'Arrogant' student hurls bolttle at Indian singer Sunidhi Chauhan's face during concert 'Arrogant' student hurls bolttle at Indian singer Sunidhi Chauhan's face during concert

Opinion

  1. 9th May - A year later
    9th May - A year later

    By Mutaza Solangi

  2. Everything but the truth in Telegraph
    Everything but the truth in Telegraph

    By Mutaza Solangi

  3. PM Shehbaz Sharif, WEF and Pakistan
    PM Shehbaz Sharif, WEF and Pakistan

    By Naveed Aman Khan

  4. Employing global best practices in Pakistan-Saudi ties
    Employing global best practices in Pakistan-Saudi ties

    By Nasim Zehra

  5. PML-N smashed PTI in by-polls
    PML-N smashed PTI in by-polls

    By News Desk

  6. Riding the Digital Wave: How Technology is Rewriting the Script of Economic Prosperity
    Riding the Digital Wave: How Technology is Rewriting the Script of Economic Prosperity

    By News Desk