logo

TeamViewer links corporate cyberattack to Russian state hackers

ID: 4bfa4ba9-b3d9-5011-abb9-6984818e0127

STIX ID: report--4bfa4ba9-b3d9-5011-abb9-6984818e0127

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2024-06-28

Date Updated: 2026-04-20

Author: Lawrence Abrams

...
...

TeamViewer disclosed that on June 26 an employee credential was used to breach its corporate IT network; the company attributes the activity to the Russian state-sponsored APT known as Midnight Blizzard (APT29/Cozy Bear/Nobelium). TeamViewer states its production environment and customer data remain isolated and unaffected, and recommends customers enable MFA, configure allow/block lists, and monitor TeamViewer logs and network connections.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.