Valve says a data breach may have exposed the personal information of customers who ordered its Steam hardware in Europe. In an email sent to users, Valve says its European shipping partner, CEVA Logistics, suffered a data breach that may have included customer names, addresses, phone numbers, and email addresses.
The breach at CEVA occurred between July 29th and August 1st, weeks after Valve began taking reservations for its new Steam Machine and Steam Controller. Valve adds that European customer data âwas likely compromisedâ as part of the breach, as CEVA stores âdelivery-related informationâ for up to 90 days after orders.
As a result of the breach, Valve says to âexpect fake messagesâ over email, text, or on the phone that claim to come from Steam, Valve, or a delivery company. âThey may quote your address back to you to prove theyâre genuine. They may ask you to confirm a delivery, pay a small customs or redelivery fee, or sign in somewhere to âverifyâ your order,â Valve says. âTreat all of them as fake.â
The notice says additional data linked to usersâ Steam accounts or purchases wasnât impacted, adding that CEVA âdoes not have access to your payment information, passwords, Steam Guard codes or other information.â Valve notes that it only deals with account issues from help.steampowered.com, and wonât contact users over email, Steam chat, or Discord.
Read the full article here