Russian Cyberespoinage Group APT29 Linked to Recent TeamViewer Hack 

2 Mins Read

PUREVPNNewsRussian Cyberespoinage Group APT29 Linked to Recent TeamViewer Hack 

TeamViewer, a popular provider of remote connectivity software, recently confirmed a security breach within its systems. The company confirmed that it detected an intrusion on June 26, 2024, affecting its internal corporate IT infrastructure. However, the breach did not compromise its product environment, TeamViewer connectivity platform, or any customer data. 

TeamViewer stated, “Following best-practice architecture, we have a strong segregation of the Corporate IT, the production environment, and the TeamViewer connectivity platform in place. This separation of servers, networks, and accounts is done to prevent unauthorized access and restrict movement between different areas. Learn more below!

Details of the Breach

The intrusion was traced back to the misuse of credentials from a standard employee account, which allowed the attackers to access corporate IT resources. The attackers managed to extract data from the employee directory, including names, corporate contact information, and encrypted passwords for the internal environment. 

TeamViewer worked with Microsoft to neutralize the security concerns linked to the encrypted passwords. “The risk associated with the encrypted passwords contained in the directory has been mitigated in collaboration with leading experts from our incident response partner Microsoft,” TeamViewer explained.

Attribution of the Hack

The attack has been attributed to APT29, a notorious group linked to Russian cyberespionage efforts. Also known by names like Cozy Bear and Midnight Blizzard, APT29 is recognized for its sophisticated attacks on significant targets, including Microsoft.

Security firms and organizations like NCC Group and the US-based Health Information Sharing and Analysis Center (Health-ISAC) were quick to pinpoint APT29 as the culprits, following the discovery of the breach.

Recognized for its perseverance and ample resources, APT29 is known to employ straightforward yet powerful methods, such as password theft, to execute extended, covert espionage operations focused on acquiring sensitive information.

Related Reads:

author

Anas Hasan

date

July 1, 2024

time

3 days ago

Anas Hassan is a tech geek and cybersecurity enthusiast. He has a vast experience in the field of digital transformation industry. When Anas isn’t blogging, he watches the football games.

Have Your Say!!

Join 3 million+ users to embrace internet freedom

Signup for PureVPN to get complete online security and privacy with a hidden IP address and encrypted internet traffic.