Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Incident Response

Steam: Attackers Accessed Copy of Backup Files

In November 2011, the Steam gaming platform, in addition to user forums where gaming fans gather to discuss various gaming topics, said that intruders obtained access to its Steam database in addition to the defacing the forums.

In November 2011, the Steam gaming platform, in addition to user forums where gaming fans gather to discuss various gaming topics, said that intruders obtained access to its Steam database in addition to the defacing the forums. At the time, the company said the compromised database contained information including user names, hashed and salted passwords, game purchases, email addresses, billing addresses and encrypted credit card information.

Steam Database HackedAfter the company continued its investigation into the incident, Steam has now come forward with more information, saying that intruders likely obtained a copy of a backup file containing information on Steam transactions that took place between 2004 and 2008. This backup file, the company says, contained user names, email addresses, encrypted billing addresses and encrypted credit card information. The file did not include Steam passwords, they said.

“We do not have any evidence that the encrypted credit card numbers or billing addresses have been compromised. However as I said in November it’s a good idea to watch your credit card activity and statements. And of course keeping Steam Guard on is a good idea as well,” noted Gabe Newell, Founder of Steam parent Valve Corporation, in a blog post.

“We are still investigating and working with law enforcement authorities. Some state laws require a more formal notice of this incident so some of you will get that notice, but we wanted to update everyone with this new information now,” Newell added.

Steam is a gaming platform where gamers can buy and download games and play them from any computer. The Steam service is also backed by a large gaming community on the forums, and many of them use the service to chat as they play. The services support millions of users.

Written By

For more than 15 years, Mike Lennon has been closely monitoring the threat landscape and analyzing trends in the National Security and enterprise cybersecurity space. In his role at SecurityWeek, he oversees the editorial direction of the publication and is founder and director of several leading cybersecurity industry conferences around the world.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join as speakers examine the various components of ASM strategy, the push to mandate continuous asset visibility and inventory tools, and the use of red-teaming, bug bounties and pen-tests in modern security programs.

Register

In this live webinar, learn how to define your minimum viable business, identify the systems it depends on, measure actual recovery time against business requirements, and present the gaps to the board as measurable risk.

Register

People on the Move

Frank Verdecanna has been appointed Chief Financial Officer at Armadin.

Keeper Security has named Jessica Krowel and Bill Grabner as SVPs of sales for North America.

Skyhigh Security has named Anthony Palladino as Chief Operating Officer.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.