TeamViewer Investigation Points To Reused Login Credentials From Hacked Websites

Some people may remember the TeamViewer hack, which affected several thousand users. Some people even complained about money being stolen from their PayPal account in the process. As it turns out, most of the affected users are to blame for this debacle, as they reused passwords.

TeamViewer Still Denies Allegations

Reusing a password in this day and age is asking for trouble, unfortunately. The TeamViewer hack got a lot of attention, even though the company continues to deny allegations of their services being hacked. Instead, they blame users for reusing passwords obtained through other hacked platforms, such as LinkedIn or MySpace.

While it is difficult to prove who is to blame for this breach, the explanation by TeamViewer sounds plausible. Moreover, the company implemented some new security features to ensure these attacks would not happen again in the future. Even if users reuse an old password, the software will send an email to the user, and ask for permission to approve or deny these requests.

Although there is an argument to be made as to how this solution comes after the facts, it is still positive to see TeamViewer acknowledge the problems. Checking the GPS coordinates of login attempts is another added security feature. This one is particularly interesting, as it should give users a clear idea as to where their account is being accessed from.



Related Post

It is worth noting TeamViewer decided to investigate this breach a bit further, as they came across the list of leaked passwords from other platforms. After cross-referencing some data, it turns out several users did indeed reuse their passwords. Since the assailants also had access to user email addresses – which were also reused – it did not take much effort to cause a massive wave of hacking attacks.

One topic that still needs clarification is whether or not users with 2FA enabled were hacked as well. TeamViewer advised all affected users to upload their log files so the company can continue their investigation. Mainly users who claim to have had 2FA enabled should send over their records. The company does not exclude the possibility something went wrong with this level of security, but they want to form a full timeline of the events first.

Image credit 1

If you liked this article follow us on Twitter @themerklenews and make sure to subscribe to our newsletter to receive the latest bitcoin and altcoin price analysis and the latest cryptocurrency news.

JP Buntinx

JP Buntinx is a FinTech and Bitcoin enthusiast living in Belgium. His passion for finance and technology made him one of the world's leading freelance Bitcoin writers, and he aims to achieve the same level of respect in the FinTech sector.

Share
Published by
JP Buntinx

Recent Posts

Velocity Ticket Debuts As The AI-Powered Invoicing Tool Every Service Business Needs in 2026

Velocity Ticket is trying to fix a major gap in businesses, and the approach it…

2 days ago

Axelar Confirms $4.67M Exploit on Secret Network Bridge, Core Protocol Remains Unaffected

Axelar is moving fast to contain damage after identifying a security incident that has resulted…

3 days ago

Sui Synthetic Dollar suiUSDe Gets Its Own Website

suiUSDe now has a dedicated landing page. The token, officially the eSui Dollar, comes out…

3 days ago

Ventuals Winds Down HIP-3 DEX, vHYPE Withdrawals Now Live For All Holders

Ventuals has fully wound down its HIP-3 DEX, and vHYPE withdrawals are now open. The…

3 days ago

Avalanche Launches Payments Collective With Franklin Templeton And 25 Others

Avalanche has launched the Avalanche Payments Collective, bringing together 28 organizations spanning nearly every layer…

4 days ago

ASTER Whale Reopens 5x Long Days After Getting Fully Liquidated On The Same Token

A wallet tracked as 0x5f91 just opened a fresh 5x leveraged long on ASTER, putting…

4 days ago