Update: #CoSoSec
TeamViewer, together with external incident response support, currently attributes the attack to the Midnight Blizzard/APT29 threat actor.
Remote software services like TeamViewer are frequently used by threat actors to gain initial access and establishing persistence on target networks.
https://www.infosecurity-magazine.com/news/vpn-rdp-exploitation-common-attack/
TeamViewer Cyber-Attack Attributed to Russian APT Midnight Blizzard