Teamviewer has been hacked--users please take precaution

Chary

Never sleeps
OP
Chief Editor
Joined
Oct 2, 2012
Messages
12,093
Trophies
4
Age
26
Website
opencritic.com
XP
118,203
Country
United States
It looks like there's been a security breach for popular remote control program Teamviewer. Reddit users on r/teamviewer have been reporting that their paypal information and passwords were stolen during random remote connections from hackers. If you use the program, be sure to check C:\Program Files\TeamViewer\Connections_incoming.txt to see who's been accessing your computer. I'd recommend that you uninstall Teamviewer at this time, just to ensure nothing bad happens.

:!: Subreddit and discussion
 

FAST6191

Techromancer
Editorial Team
Joined
Nov 21, 2005
Messages
36,349
Trophies
3
XP
27,317
Country
United Kingdom
Hmm, I saw it had troubles connecting/generating numbers earlier today.

Trying to think how many machines it might be installed on. An awful lot given it is a standard option I pick in ninite. Not sure what I want to do here, much less at 3am in my own time zone (it will be on machines in several more that I am variously responsible for).

Tomorrow may be a busy day.
 

FAST6191

Techromancer
Editorial Team
Joined
Nov 21, 2005
Messages
36,349
Trophies
3
XP
27,317
Country
United Kingdom
It is possible to use such things somewhat safely, though I must confess I don't think I sandboxed any installs of this unless you count having them inside VMs for some things. Also after you have tried talking your elderly relatives through whatever operation they are trying to do this week over the phone (probably trivial for you, hard as you like trying to translate it and worse if things are not in alphabetical order because someone clicked and dragged or something) then you will begin to appreciate the sentiment behind the great album title "give me convenience or give me death".

Reading around though it seems it might be people that have accounts rather than just numbers, not sure about simple unattended access. If it is just accounts then that makes my life easier -- I usually do not do any accounts so people have to phone me and tell me numbers as it gives them a false peace of mind (more than once I heard it is scary seeing the mouse move and files being opened or similar, yet my command line or SSH fun does not even register).

Teamviewer PR also seem to be handling it very badly so there is at least the breakdown of what they have done there to look forward to.
 
  • Like
Reactions: daxtsu

Joom

 ❤❤❤
Member
Joined
Jan 8, 2016
Messages
6,026
Trophies
1
Location
US
Website
mogbox.net
XP
5,988
Country
United States
Aw fuck. This is why decentralized RATs are better. Albeit often used maliciously, I tend to use things like DarkComet and NetWire over TeamViewer (with user consent of course). And yes, TeamViewer is a RAT. It's just a commercial, benign one.
 
  • Like
Reactions: VinsCool

cearp

瓜老外
Developer
Joined
May 26, 2008
Messages
8,673
Trophies
2
XP
8,100
Country
Tuvalu
Aw fuck. This is why decentralized RATs are better. Albeit often used maliciously, I tend to use things like DarkComet and NetWire over TeamViewer (with user consent of course). And yes, TeamViewer is a RAT. It's just a commercial, benign one.
ok yeah... but 'rat' is negative, without permission.
teamviewer is with permission... so i wouldn't call it a 'rat'. (although sure, 'remote assisted tool' is correct)
 

Joom

 ❤❤❤
Member
Joined
Jan 8, 2016
Messages
6,026
Trophies
1
Location
US
Website
mogbox.net
XP
5,988
Country
United States
ok yeah... but 'rat' is negative, without permission.
teamviewer is with permission... so i wouldn't call it a 'rat'. (although sure, 'remote assisted tool' is correct)
TeamViewer is a RAT in every sense of the definition. There are malicious VNC servers as well, but hey. Those intended for malicious purposes can still be used for legitimate purposes. They tend to work better than TV as well. :) Besides, I don't really care what my grandmother's passwords and keystrokes are.
 

Yoshimashin

Penguin Spy
Member
Joined
Aug 17, 2006
Messages
405
Trophies
1
Age
35
Location
Seattle, Washington
XP
511
Country
United States
This probably explains how both my Amazon and Ebay randomly purchased multiple $100 giftcards.

As a precaution I removed this software, cleared my Chrome password log and unrooted my phone. Good to know I found the probable cause.


Edit

ISH5w3m.png


Yup.




Goddammit.
 
Last edited by Yoshimashin,

Pedeadstrian

GBAtemp's Official frill-necked lizard.
Member
Joined
Oct 12, 2012
Messages
3,965
Trophies
2
Location
Sandy Eggo
XP
3,744
Country
United States
Didn't Teamviewer get hacked weeks if not months ago? I remember reading about it. Kinda late for a precautionary post. Funny thing, I signed up for Teamviewer in 2010 and didn't get any mail from them other than for the initial email validation, but after reading about Teamviewer being hacked I've received four new contact requests, which were obviously people trying to hack my computer.
 
General chit-chat
Help Users
  • JuanMena @ JuanMena:
    Kissing random dudes choking in celery? Really? Need to study for that?
  • K3N1 @ K3N1:
    Yes it requires a degree
  • K3N1 @ K3N1:
    I could also yank out the rest of my teeth but theirs professionals for that
  • x65943 @ x65943:
    If your throat closes, putting oxygen in your mouth will not solve anything - as you will be introducing oxygen prior to the area of obstruction
  • JuanMena @ JuanMena:
    Just kiss me Kyle.
  • x65943 @ x65943:
    You either need to be intubated to bypass obstruction or create a stoma inferior to the the area of obstruction to survive
  • x65943 @ x65943:
    "Just kiss me Kyle." And I thought all the godreborn gay stuff was a smear campaign
  • JuanMena @ JuanMena:
    If I die, tell my momma I won't be carrying Baby Jesus this christmas :sad::cry:
  • K3N1 @ K3N1:
    Smear campaigns are in The political section now?
  • JuanMena @ JuanMena:
    Chary! Chary! Chary, Chary, Chary!
  • Sonic Angel Knight @ Sonic Angel Knight:
    Pork Provolone :P
  • Psionic Roshambo @ Psionic Roshambo:
    Sounds yummy
  • K3N1 @ K3N1:
    Sweet found my Wii u PSU right after I ordered a new one :tpi:
  • JuanMena @ JuanMena:
    It was waiting for you to order another one.
    Seems like, your PSU was waiting for a partner.
  • JuanMena @ JuanMena:
    Keep them both
    separated or you'll have more PSUs each year.
  • K3N1 @ K3N1:
    Well one you insert one PSU into the other one you get power
  • JuanMena @ JuanMena:
    It literally turns it on.
  • K3N1 @ K3N1:
    Yeah power supplies are filthy perverts
  • K3N1 @ K3N1:
    @Psionic Roshambo has a new friend
    +1
  • JuanMena @ JuanMena:
    It's Kyle, the guy that went to school to be a Certified man Kisser.
  • Psionic Roshambo @ Psionic Roshambo:
    Cartmans hand has taco flavored kisses
  • A @ abraarukuk:
    hi guys
  • Iron_Masuku @ Iron_Masuku:
    Hello
    Skelletonike @ Skelletonike: hmm