National

Chinese Hackers Targeted Serum Institute, Bharat Biotech: Cyber Firm Report

China and India have both sold or gifted coronavirus shots to many nations under vaccine diplomacy programme.

Chinese Hackers Targeted Serum Institute, Bharat Biotech: Cyber Firm Report
info_icon

A hacking group backed by China has in recent weeks targeted the IT systems of two Indian vaccine makers whose Covid-19 vaccines are being used in the country’s immunisation drive, reported news agency Reuters quoting cyber intelligence firm Cyfirma.

China and India have both sold or gifted coronavirus shots to many nations under vaccine diplomacy programme. India produces more than 60 per cent of all vaccines sold in the world. 

Chinese hacking group APT10, also known as Stone Panda, had identified gaps and vulnerabilities in the IT infrastructure and supply chain software of Bharat Biotech and the Serum Institute of India (SII), the world’s largest vaccine maker, Goldman Sachs-backed Cyfirma, based in Singapore and Tokyo said.  

“The real motivation here is actually exfiltrating intellectual property and getting competitive advantage over Indian pharmaceutical companies,” said Cyfirma Chief Executive Kumar Ritesh, formerly a top cyber official with British foreign intelligence agency MI6. He said APT10 was actively targeting SII, which is making the AstraZeneca vaccine for many countries and will soon start bulk-manufacturing Novavax shots.

“In the case of Serum Institute, they have found a number of their public servers running weak web servers, these are vulnerable web servers,” Ritesh said, referring to the hackers. “They have spoken about weak web application, they are also talking about weak content-management system. It’s quite alarming,” he said.

The US Department of Justice said in 2018 that APT10 had acted in association with the Chinese Ministry of State Security.

In November, Microsoft said that it had detected cyber-attacks from Russia and North Korea targeting vaccine companies in India, Canada, France, South Korea and the United States. North Korean hackers also tried to break into the systems of British drugmaker AstraZeneca, Reuters has reported.

Ritesh, whose firm follows the activities of some 750 cyber criminals and monitors nearly 2,000 hacking campaigns using a tool called decipher, said it was not yet clear what vaccine-related information APT10 may have accessed from the Indian companies.

Bharat Biotech’s COVAXIN shot, developed in association with the state-run Indian Council of Medical Research (ICMR), will be exported to many countries, including Brazil.

US drugmaker Pfizer Inc and its German partner BioNTech SE said in December that documents related to the development of their Covid-19 vaccine had been “unlawfully accessed” in a cyberattack on Europe’s medicines regulator.