

At the time, TeamViewer indicated the compromised user accounts were most likely the result of stolen or weak passwords. In 2016, TeamViewer users reported that remote users were controlling their devices without their authorization. If organizations do not activate multi-factor authentication, they increase the chances of someone accessing their network. Is TeamViewer a Security Risk?Īccording to Ashu Singhal of Orion Networks, TeamViewer’s popularity and ease of use have made it vulnerable to attacks, primarily because of leaked credentials. Since its initial release, TeamViewer has expanded to include a cloud-based solution. At this point, the remote user can troubleshoot the device, install software, or demonstrate how to use an application. After the credentials are entered, the remote device connects to the target and assumes control. Once the application is on the target computer, the user provides the remote user with the credentials necessary to identify the target. It is free for non-commercial use and can be downloaded from the company’s website. TeamViewer allows remote control of a target computer when its software is installed on both devices. What is TeamViewer?Īccording to its website, TeamViewer is a comprehensive remote access, remote control, and remote support solution that works with almost every desktop and mobile platform. According to the report, the hackers accessed the network using TeamViewer, a remote access solution that gave them control over the computer. A plant operator reversed the changes immediately with no impact on the drinking water.

Hackers were able to connect to a computer on the city’s water treatment plant, where they took control of a computer and made changes to the sodium hydroxide (lye) levels being added to the city’s drinking water. Oldsmar is a small town of 15,000 people north of Tampa, Florida. It did, however, have the potential to have real-world consequences.

The Oldsmar attack did not receive significant media coverage because it wasn’t successful. We decided to explore the topic with several IT experts. Given the conflicting recommendations, many organizations are left wondering if they should remove TeamViewer. Some security experts recommended the removal of TeamViewer from use. After the Oldsmar attack on February 5, the FBI cautioned users of TeamViewer to review internal networks and existing access control policies.
