250°

89 million Steam account details allegedly leaked, but no one seems to know how

A LinkedIn post from Underdark AI made the discovery, stating that datasets are being sold for over $5,000 on a known black market forum.

Create Report !X

Add Report

Reports

+ Updates (1)- Updates (1)

Updates

Changed from Pending to Approved
Community6d ago
Cockney7d ago

Biggest hack in gaming history if true

Christopher7d ago

No personal details, mostly account names, no passwords. Likely would need other account leaks to hope that someone reuses a password with a similar account name on another already leaked service. While a lot of users, the data is useless. Kind of notably by the $5k request for the data.

FinalFantasyFanatic5d ago

Plus, if you have 2FA enabled, then you were at zero risk anyway, from what I've read, Steam isn't even recommending password changes as it's apparently unnecessary.

VariantAEC1d 6h ago

@Christopher
Where are you getting that from?
The linked article above says, "The seller claims this is a “fresh” leak and says it includes usernames, passwords, two-factor SMS logs, message contents, metadata, delivery status, and other sensitive details." Which sure sounds like they might have a lot of other information. If this leak is legitimate I better stop hearing people falsely say PSN is the worst secured digital storefront (even though that hasn't been true for a very long time with far larger data breaches since 2011 all over the world including the Equifax breach which was several times larger).

VariantAEC1d 6h ago

@FinalFantasyFanatic
That seems true only if you use Steam Guard. If you opted for T2A via SMS the article suggests it's time to make the switch to Steam Guard and of course change your password.

Christopher1d 5h ago (Edited 1d 5h ago )

From the credit URL: https://x.com/MellowOnline1...

The article doesn't do a good job of going into the updated detail, they just mention part of it.

Just because the seller claims something, doesn't make it true. If it truly contained that data, it would be worth way more than just $5k. SMS systems don't rely on getting passwords for accounts they're sending an SMS to, just the username, phone number, and timestamp info.

+ Show (1) more replyLast reply 1d 5h ago
Profchaos5d ago (Edited 5d ago )

You don't remember the psn hack I take it

Cockney5d ago

I do remember it being 77 million, thats why I made my comment

BlueDaBaDee6d ago

Update:
"Valve has now confirmed that “this was NOT a breach of Steam systems” and users do not need to change their passwords as a result. However, it continues to recommend that you set up the Steam Mobile authenticator for extra security."

https://store.steampowered....

Fishy Fingers6d ago

Shame. I liked the idea someone paid 5 grand just for my silly steam name.

DivineHand1256d ago

The government needs a taskforce with serious fundung that can opporate across borders to go after cyber criminals.

It is getting out of hand and it is the regular citizens of the world that suffer the consequences of these hacks and breaches.

My fear is that if left unchecked, state sponsored hackers from corrupt or governents under sections may use this as a method of raising revenue at the expense of everyone else.

Fishy Fingers6d ago

Bro teeing up a Mission Impossible movie.

ZeekQuattro6d ago

Not in this administration. If anything hes been dissolving existing task forces meant to protect consumers.

Amplitude6d ago (Edited 6d ago )

Why? They’d just use the funding to funnel hundred of millions of dollars into fake NGOs that then funnel it into democrat pockets while doing zero cyber criminal defence work.

Then if anybody tried to defund them it’d be a whole thing with the mainstream media claiming that there will be endless cyber attacks. NGOs would then fund protest groups to attack anybody that supports defunding the government’s cyber attack defence branch and then it would turn out it was also being used to stabilize or destabilize governments in other countries and overthrow elections to benefit America. Which is fine until they start using it on us again.

Let’s just not. Private companies who know what they’re doing (Valve) can deal with it

RIP USAID. God bless

Profchaos5d ago (Edited 5d ago )

It's not a may use this not we know state sponsored attacks do this already.

It's a global problem you couldn't have one government playing world police it would require joint collaboration with foreign governments and the problem is many laws have not kept pace with advancement of technology.

even then it's hard to say with certainty if an attack was a state sponsored attacks or a cybercriminal group operating outside of governments

+ Show (1) more replyLast reply 5d ago
pwnmaster30006d ago

remember when certain groups were saying PC gamers don’t want other subscriptions because it was not safe and steam was the spot lol.

Shiore2u6d ago ShowReplies(6)
badz1496d ago

it's time to riot, right, pc gamers??

pwnmaster30006d ago

Be careful, PC gamers are the most touchy out of the gamers lol

staticall5d ago

@badz149
@pwnmaster3000
Have you guys actually read what was «leaked»? It was SMS messages from 3rd party provider (not from Steam itself) with one-time 2FA codes (that are active for 15 minutes). No Steam account details, access to an account or any of that jazz.

Let me quote official Steam response:
«The leak consisted of older text messages that included one-time codes that were only valid for 15-minute time frames and the phone numbers they were sent to. The leaked data did not associate the phone numbers with a Steam account, password information, payment information or other personal data. Old text messages cannot be used to breach the security of your Steam account, and whenever a code is used to change your Steam email or password using SMS, you will receive a confirmation via email and/or Steam secure messages.»
Source: https://store.steampowered....

The only bad thing about this is the phone numbers. But while that sucks, attacker doesn't know which Steam account this phone number belongs to. IMO, the only thing people should be rioting about is how unprotected the SMS are and the 3rd party service that was used by Steam. I'm all for punishing people who screwed up and/or lacked the security. But this is not it.

FinalFantasyFanatic5d ago

Why riot? They have nothing of value, can't even steal an account with the details they have, they would have to attempt a brute force attack, you can already do that with a Steam user's account name (or any account on any site) if you really wanted to spend the time and processing power to do it.

Show all comments (34)
90°

Xbox May Update: Retro Classics Come to Xbox Game Pass, PC Gaming Updates, and More

A variety of new updates are available this month across the gaming platforms. Coming today, Retro Classics games are available to play for Xbox Game Pass members. Players who stream on the Xbox app on PC now have an additional streaming option with GeForce Now. Game Bar introduces quick settings, visual updates for Widgets in Compact Mode, and coming soon, Microsoft Edge Game Assist, an in-game browser that brings an immersive game-centric experience to Edge. And Xbox gift cards can now be redeemed for any amount via Xbox Rewards.

Read Full Story >>
news.xbox.com
Create Report !X

Add Report

Reports

+ Updates (2)- Updates (2)

Updates

Changed from Pending to Approved
Community7h ago
Changed: embed code
darthv7213h ago
darthv7213h ago

While i appreciate the gesture.... all of these retro classics have been made available everywhere else. I am hoping to see some other Activision properties make their way out of the shackles of the 5th, 6th and 7th gen. Licensing be damned... bring back the Transformers Cybertron games.

P_Bomb5h ago

Love the Cybertron games! TF games have been shit lately. Would love to see that era revisited. I even did the multiplayer!

Obscure_Observer8h ago

Metaphor on Gamepass just announced! O.o

Seriously, this is the best generation of Xbox ever!!!

We can´t catch a freaking break from awesome games arriving all the time!!!

Deathdeliverer5h ago

It’s a HELL of a game. If you like JRPGs in the family of Persona, you will be in heaven… that is until you hear the various battle music…. then you’ll be somewhere BEYOND heaven!

70°

SAG-AFTRA Files Over A.I. Darth Vader In Fortnite

SAG-AFTRA Files Over A.I. Darth Vader in Fortnite claiming this was done without notification and has filed accordingly.

Create Report !X

Add Report

Reports

+ Updates (1)- Updates (1)

Updates

Changed from Pending to Approved
Community1d 22h ago
spoonard1d 19h ago (Edited 1d 19h ago )

It's just a complaint, not a lawsuit, and it's completely unwarranted.

Garethvk1d 19h ago

I said filed which they did. Filed a complaint.

VersusDMC1d 17h ago

James earl jones sold his voice for use for Darth Vader after his passing and his estate said they approved it.

So i don't know why SAG is getting involved as it makes it seem like they are going against james earl jones wishes or just wanted a cut...

Garethvk1d 16h ago

They are concerned about A.I. replacing live talent. It's an unusual stance as you are correct; he left his voice and his family approved. The union is saying doing this versus using a live actor sets a bad precedent going forward. The use of A.I. has been a huge issue in the recent labor deals.

VersusDMC1d 13h ago

Well this is also an interactive AI Darth Vader that would have made live talent impossible unless they think a actor being in Fortnight 24/7 is an acceptable solution.

They should concentrate on cases that are possible to be done with live talent and that haven't been given blessing or sold by the original actor(for which they should have the right to sell)

Eonjay1d 10h ago

"James earl jones sold his voice for use for Darth Vader after his passing and his estate said they approved it."

I have to say if James approved this after his death... that would be... um...

Do you mean he approved it while he was alive for when he passed?

VersusDMC1d 8h ago

It's reported that he gave permission before his death and his estate(which i asume is his family) says so as well.

spoonard1d 2h ago

Because SAG-AFTRA are trade unions. They are the Hollywood mafia protecting their profits from anything they feel could undermine them. It's all about the almighty dollar, not artists.

Christopher11h ago

James Earl Jones doesn't own the character, though. He essentially said the owners of the IP can use his voice however they wish, not everyone.

+ Show (1) more replyLast reply 11h ago
90°

Epic Games Asks Judge to Force Apple to Unblock Fortnite on iOS

The saga of the legal battle that sees Epic Games fight Apple in the attempt to bring Fortnite back to iOS has just gained another chapter.

Read Full Story >>
simulationdaily.com
Create Report !X

Add Report

Reports

+ Updates (1)- Updates (1)

Updates

Changed from Pending to Approved
Community2d ago
PapaBop2d ago

Damn, I'm going to need to restock my popcorn if this keeps up.