The Guardian (USA)

Chinese firm got Covid contract despite trying to hack NHS data, minister says

- Daniel Boffey Chief reporter

China’s leading genomics research company was given a Covid testing contract in the UK despite ministers knowing it had repeatedly sought to hack into the NHS’s genetic datacentre, a government minister has said.

The BGI Group was making multiple attempts every week to “hack” into Genomics England in 2014, George Freeman, a Cabinet Office minister, revealed to MPs, and is said to remain a “danger”.

Despite the “aggressive” approach of the Chinese company towards the intellectu­al property of others, its subsidiary, BGI Genomics, was handed an £11m Covid testing contract in 2021.

The Chinese company has also worked alongside and shared data with UK universiti­es and the Wellcome Trust charitable foundation.

The revelation came during a Commons debate in Westminste­r Hall, where Freeman, who was previously a minister for life sciences, was seeking to reassure concerned MPs that the government was aware of the risks posed by BGI.

He told MPs: “BGI is clearly one of those danger points in the ecosystem. When I was wheeled out in 2014 to give a speech on the occasion of the visit of President Xi to the Guildhall as President Xi and then PM Cameron were wheeled in, I was speaking to about a thousand Chinese delegates about Genomics England.

“I was preparing to pay tribute to the work of BGI when my officials pointed out that each week at that point Genomics England was receiving several hack attacks from BGI, and that was a wake-up call for all of us. We are very well aware that we have to manage these risks properly.”

Freeman added: “On that point I have literally just commission­ed and received from UK Research and Innovation a detailed assessment of all of the China research and innovation links across our system.

“We did the same last year on Russia and I’ve passed that through to the security minister, and he and I and our officials are shortly to go through it in detail, in particular looking at some of those actors like BGI, who we know are quite aggressive in terms of internatio­nal acquisitio­n of intellectu­al property.”

Several hours after the minister’s comments, government sources sought to backtrack on the claims, without further explanatio­n. “There is no evidence of attempted hacking of Genomics England in 2014 from BGI”, the source said. “However, like most organisati­ons they do receive regular attempts to access their systems, for which there are appropriat­e defences in place. No successful breaches have occurred.”

Responding to the minister’s comments, Alistair Carmichael, the former Liberal Democrat cabinet minister who chairs the all-party parliament­ary group on Uyghurs, the persecuted Muslim minority group in China, told the Guardian that he could not understand why a sensitive health contract could have been given to BGI.

He said: “The suggestion by the minister that BGI has attempted to hack Genomics England is deeply concerning. If correct, we have to ask why the government would provide public sector contracts to a company that it knows is trying to steal sensitive informatio­n.

“This has exposed alarming vulnerabil­ities and shows exactly why we need an urgent review into the research partnershi­ps BGI holds with UK universiti­es. It also raises serious questions on why the government has not already warned universiti­es about the risks BGI poses.”

In a statement, the BGI Group said of Freeman’s remarks: “We are incredulou­s at this statement. BGI Group has never been, and will never be, involved in ‘hack attacks’ against anyone.”

The comments came as Rishi Sunak was facing cross-party pressure to follow the US and bar BGI Group from government contracts after the firm recommitte­d to continue its work in the UK.

MPs on the defence, foreign and health select committees along with Carmichael are calling for tougher controls in a procuremen­t bill going through parliament over fears that the company and others pose a security risk to genetic data in the UK.

Last week, Washington added the BGI subsidiari­es BGI Research and BGI Tech Solutions (HongKong) Co Ltd, to a trade blacklist due to concerns that Americans’ DNA was vulnerable to being stored and misused.

A BGI spokespers­on said it intended to build on its work on Covid in the UK.

“In recognisin­g the UK’s global leadership in genomics and life sciences, BGI Group took the strategic decision to invest in the UK before the pandemic,” the spokespers­on said.

“During Covid-19 we helped the UK government to fight against the pandemic by providing PCR testing kits to the Department of Health and other parties. BGI will continue to support the UK in improving the health of people.”

The BGI spokespers­on added that they believed the US decision last week may have been “impacted by misinforma­tion”, adding that its UK operations met all local regulation­s and laws.

He said: “Our lab in the UK has its own local servers, and data processed in the UK remain in the UK and the EU. BGI Group’s labs meet stringent standards in informatio­n security.

“BGI Group does not condone and would never be involved in any human rights abuses. BGI Group is not ‘statelinke­d’. None of BGI Group is stateowned or state-controlled, and all of BGI Group’s services and research are provided for civilian and scientific purposes.”

In a letter to the prime minister, the Labour MPs Taiwo Owatemi, Siobhain McDonagh and John Spellar and Carmichael have neverthele­ss warned of the “huge ethical, privacy, commercial and security risks” involved in continuing to allow Chinese state-linked companies access to sensitive government contracts.

They are seeking clauses that would “remove state-linked Chinese genomics firms, such as BGI, from the government’s procuremen­t supply chain”.

The government has already tightened the bill, which will introduce rules for firms competing for government contracts worth £300bn a year, to give ministers discretion to exclude companies from contracts where a national security risk can be demonstrat­ed.

But there is growing clamour for the prime minister to go further and designate certain sectors as being highly sensitive and therefore mandatoril­y barred to foreign state-controlled or statelinke­d companies.

The MPs are also seeking a review of whether BGI’s investment­s with UK financial institutio­ns, its private sector contracts and relationsh­ips with UK universiti­es could pose a risk.

As evidence of the need to end these relationsh­ips, the MPs cited in their letter a Reuters report that claimed a prenatal test taken by millions of women globally, said to have been developed by BGI Group in collaborat­ion with the Chinese military, had been used to collect genetic data.

The BGI Group spokespers­on said: “BGI’s prenatal test was solely developed by BGI, not in collaborat­ion with the military.

“BGI’s test data are stored in BGI’s labs, separate from China National GeneBank. The CNGB is owned by the government and operated by BGI-Research under the guidance and supervisio­n of a board of trustees, in a model that is similar to the way that most of the US National Laboratori­es operate.”

A government spokespers­on said: “The procuremen­t bill will strengthen our protection against national security threats, including allowing central government to reject suppliers which pose a threat to national security.”

 ?? ?? Workers at a Covid testing lab in Beijing provided by BGI. Photograph: Xinhua/Rex/Shuttersto­ck
Workers at a Covid testing lab in Beijing provided by BGI. Photograph: Xinhua/Rex/Shuttersto­ck

Newspapers in English

Newspapers from United States