Steam Warns Users Due To Third Party Pwnage

Steam, Valve’s video game distribution platform, has started warning its customers by email. According to Valve, between July 29 and August 1, attackers hit CEVA Logistics, the company that handles shipping of Steam hardware to customers across Europe.
 
To do that job, CEVA receives delivery details from Steam — and the attackers likely walked away with customers’ names, street addresses, phone numbers, email addresses, and details of what they ordered and how much it cost.
 
Karolis Arbaciauskas, head of product at the cybersecurity company NordPass and its parent organization Nord Security, comments:
 
“Customers who waited months for their Steam hardware just got an unwelcome bonus: a data breach at the shipping company.
 
The good news is that passwords, payment details, and Steam Guard codes weren’t touched. The bad news? Names, addresses, phone numbers, emails, and order details are exactly the ammunition cybercriminals need for convincing phishing campaigns. When a scammer can quote your real address and order back to you, a fake ‘confirm your delivery’ email stops looking fake.
 
Affected users should expect a wave of fraudulent emails, texts, and calls impersonating Steam, Valve, or courier companies. Users should especially watch for classic customs fee scams, redelivery scams, and fake password resets.
 
The latter is one of the most dangerous, because clicking the link and ‘resetting’ your password hands the keys to your entire Steam account to hackers, game library and all. A recent study shows that stolen Steam accounts sell for around $80 on dark web marketplaces.
 
So stay vigilant: never click links in unexpected messages, and remember that Steam Support will never ask for your password or Steam Guard code — and neither will a courier. If a message creates urgency, that’s your cue to slow down.”

For more details, check this link: Valve emailed about a cyberattack against their shipping partner CEVA Logistics in Europe | GamingOnLinux

In the meantime, stay vigilant.

Leave a Reply

Discover more from The IT Nerd

Subscribe now to keep reading and get access to the full archive.

Continue reading