sir.khan 10 月 14 日 上午 7:38
Do you trust Steam's security?
A few months ago, my account was hacked and I was charged $80 on the marketplace.
Steam refused to refund, saying that transactions that had already taken place could not be canceled, and made no mention of the hack.

I posted this in a discussion, and people responded that it was because they were using the remember me feature.

So I figured it was my fault and didn't use remember me and didn't use the google password save feature.
And today my Steam account password was changed
There were no email alerts or steam Guard login requests.

Some people proudly claim they've never been hacked.

If you don't get hit by a rock thrown from above,
it's not because you're great. It's because you're lucky.

They don't seem to take any responsibility for the account hacking.
最后由 sir.khan 编辑于; 10 月 14 日 上午 7:53
< >
正在显示第 1 - 15 条,共 153 条留言
Account security is the users responsibility. Security systems are only as good as the person using them.

Can you recall any time you logged into your Steam account on a website that wasnt associated with Steam itself?
Hell, it could have even looked like Steam itself and still not actually be Steam.

If so, that was probably not a legitimate Steam login and your account got stolen through a third party website you provided your Steam account credentials to yourself.
最后由 Volva* {Garbage Loot Ninja} 编辑于; 10 月 14 日 上午 7:42
Hikari Light 10 月 14 日 上午 7:42 
Gabe Newall (founder and owner of Valve) has made his personal Steam account login username and password public.

But without the 2FA via the authenticator app, you cannot get into his account.

Existing security works, it is the USERS who are the problem.

So since GabeN hasnt lost his account, that means the existing security works just fine.
最后由 Hikari Light 编辑于; 10 月 14 日 上午 7:43
sir.khan 10 月 14 日 上午 7:50 
Account security is the users responsibility. Security systems are only as good as the person using them.

Can you recall any time you logged into your Steam account on a website that wasnt associated with Steam itself?
Hell, it could have even looked like Steam itself and still not actually be Steam.

If so, that was probably not a legitimate Steam login and your account got stolen through a third party website you provided your Steam account credentials to yourself.

No, I wrote this because I never did that before. There were several replies like this last time, and I followed them.
sir.khan 10 月 14 日 上午 7:52 
引用自 Hikari Light
Gabe Newall (founder and owner of Valve) has made his personal Steam account login username and password public.

But without the 2FA via the authenticator app, you cannot get into his account.

Existing security works, it is the USERS who are the problem.

So since GabeN hasnt lost his account, that means the existing security works just fine.
Well, if that account had been hacked, Steam would have taken action. But one of hundreds of millions of users? Steam wouldn't care. The hackers would know it, too.
Amaterasu 10 月 14 日 上午 7:54 
引用自 sir.khan
引用自 Hikari Light
Gabe Newall (founder and owner of Valve) has made his personal Steam account login username and password public.

But without the 2FA via the authenticator app, you cannot get into his account.

Existing security works, it is the USERS who are the problem.

So since GabeN hasnt lost his account, that means the existing security works just fine.
Well, if that account had been hacked, Steam would have taken action. But one of hundreds of millions of users? Steam wouldn't care. The hackers would know it, too.

Dude, it doesn't matter if Steam would instantly move to fix the problem. Hackers going after his account would do so because it's like the holy grail. You get to be the dude that got into GabeN's account.
GeneralDICE 10 月 14 日 上午 7:59 
Account security is the users responsibility. Security systems are only as good as the person using them.

Can you recall any time you logged into your Steam account on a website that wasnt associated with Steam itself?
Hell, it could have even looked like Steam itself and still not actually be Steam.

If so, that was probably not a legitimate Steam login and your account got stolen through a third party website you provided your Steam account credentials to yourself.

That’s a lie, there was a bot adding and got one friend to send a chat link and it all went into a chain of messages including your long known friends who sent you just a link to click in chat it was nothing suspicious, but it was phishing it went on for 1 year.

Your account was literally stolen by a click of a link, you didn’t need to give permission or have the login on the website.. a lot of people got their accounts stolen, I had half of my friends on block list so they wouldn’t reply back what is this link or I didn’t send this.

This was a very very bad management on security from steam.
t9 10 月 14 日 上午 8:00 
Hacking is unlikely, not impossible ofc. Steam had a few big issues but yeah.
Most of the time entries are successful phishing scams or similar

develop a healthy paranoia when it comes to internet security, read a bit about it
最后由 t9 编辑于; 10 月 14 日 上午 8:01
sir.khan 10 月 14 日 上午 8:04 
引用自 Amaterasu
引用自 sir.khan
Well, if that account had been hacked, Steam would have taken action. But one of hundreds of millions of users? Steam wouldn't care. The hackers would know it, too.

Dude, it doesn't matter if Steam would instantly move to fix the problem. Hackers going after his account would do so because it's like the holy grail. You get to be the dude that got into GabeN's account.
Well, maybe his account is being treated specially.
sir.khan 10 月 14 日 上午 8:05 
引用自 t9
Hacking is unlikely, not impossible ofc. Steam had a few big issues but yeah.
Most of the time entries are successful phishing scams or similar

develop a healthy paranoia when it comes to internet security, read a bit about it
I've been very careful about it since the last incident.
Amaterasu 10 月 14 日 上午 8:11 
引用自 t9
Hacking is unlikely, not impossible ofc. Steam had a few big issues but yeah.
Most of the time entries are successful phishing scams or similar

develop a healthy paranoia when it comes to internet security, read a bit about it

Trust no one, not even yourself. It's how one avoids being scammed.
引用自 GeneralDICE
Your account was literally stolen by a click of a link, you didn’t need to give permission or have the login on the website.. a lot of people got their accounts stolen, I had half of my friends on block list so they wouldn’t reply back what is this link or I didn’t send this.

This was a very very bad management on security from steam.
I would love to see some documentation of this.
最后由 Volva* {Garbage Loot Ninja} 编辑于; 10 月 14 日 上午 8:12
Chika Ogiue 10 月 14 日 上午 8:13 
引用自 sir.khan
Do you trust Steam's security?

Have had a Steam account for 20 years. It's been compromised exactly zero times.
sir.khan 10 月 14 日 上午 8:17 
引用自 Chika Ogiue
引用自 sir.khan
Do you trust Steam's security?

Have had a Steam account for 20 years. It's been compromised exactly zero times.


引用自 Chika Ogiue
引用自 sir.khan
Do you trust Steam's security?

Have had a Steam account for 20 years. It's been compromised exactly zero times.
I haven't been hacked in 15 years either.
Start_Running 10 月 14 日 上午 8:17 
OP.
Scan your system for malware
Stop giving your credentials to third-party sites

DO those two things and you'll be fine.
just in case you did not do these


1. Scan for malware https://www.malwarebytes.com/

2. Deauthorize all other devices https://psteamproxy.yuanyoumao.com/twofactor/manage

3. Change passwords from a trusted/clean computer.

4. Generate new backup codes for your Mobile App https://psteamproxy.yuanyoumao.com/twofactor/manage

5. Revoke the API key https://psteamcommunity.yuanyoumao.com/dev/apikey (there should be nothing in the APIKEY)


the thing to remember is

nobody capable of hacking steam is going to waste it messing with your account

they will get in, scrape the site of all the truly useful,

money making info and leave as quietly as they can and sell it

what happened to you was more than likely phishing.

somewhere along the lines you either gave your info to a site you thought was secure

or you logged into steam through a fake site.

it is that or you had/have some kind of virus on your system.

:Spidey:
最后由 13119205187913161 编辑于; 10 月 14 日 上午 8:22
< >
正在显示第 1 - 15 条,共 153 条留言
每页显示数: 1530 50