Skip to content

BaFin Imposes €240,000 Fine on TeamViewer over 2024 Cyberattack

The key point: BaFin sanctions a cyberattack on TeamViewer in 2024 with a €240,000 fine, thereby enforcing its oversight of NIS2 compliance in the financial sector.

The German financial regulator BaFin has imposed a fine of €240,000 on TeamViewer. The reason is a cyberattack in 2024 that concerned notification and response requirements under the NIS2 Directive.

BaFin is sanctioning TeamViewer with a €240,000 fine due to a cyberattack in 2024. The financial regulator has thereby enforced provisions that fall under the Credit Institution IT Security Act (KredIT), which transposes the NIS2 Directive into German law.

For CISOs, this case sends a clear message: supervised entities in the financial sector must not only document security incidents internally, but also fulfill the notification obligations that arise from the NIS2 Directive. BaFin consistently monitors whether notification procedures are followed and incident response protocols are correctly implemented.

TeamViewer, as a software provider with customers in the regulated financial sector, is itself subject to this supervision. The fine signals that BaFin assesses not only the defensive measures themselves, but particularly the governance in handling security incidents, even for established vendors.


Source: www.heise.de · Published 21 July 2026
Lumi AI News — AI-assisted curation in accordance with Art. 50 EU AI Act. Paraphrase and classification by Lumi News Pipeline v1.7.3.

Share on: