TeamViewer links corporate cyberattack to Russian state hackers
ID: 4bfa4ba9-b3d9-5011-abb9-6984818e0127
STIX ID: report--4bfa4ba9-b3d9-5011-abb9-6984818e0127
Feed Name: Bleeping Computer
Threat Score
TeamViewer disclosed that on June 26 an employee credential was used to breach its corporate IT network; the company attributes the activity to the Russian state-sponsored APT known as Midnight Blizzard (APT29/Cozy Bear/Nobelium). TeamViewer states its production environment and customer data remain isolated and unaffected, and recommends customers enable MFA, configure allow/block lists, and monitor TeamViewer logs and network connections.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
