logo

TeamViewer: Hackers copied employee directory and encrypted passwords

ID: 0b84c27b-e5cd-5437-8673-115337afe92b

STIX ID: report--0b84c27b-e5cd-5437-8673-115337afe92b

Feed Name: The Record from Recorded Future News

Threat Score
85/100

Date Published: 2024-07-01

Date Updated: 2026-05-01

...
...

TeamViewer confirmed that a compromised employee account enabled APT29 (linked to the Russian SVR) to breach its internal corporate IT environment and exfiltrate employee directory information and encrypted passwords; the company says customer/product environments were not accessed, mitigation was performed with Microsoft, and additional authentication hardening and rebuilding of the internal environment are underway.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.