PurpleHaze 2024년 12월 26일 오후 12시 43분
Be Aware! SteamPoint Hijack!
This morning i woke up to 72 emails that i've sent gifts to random accounts while i was asleep.
After securing my account i realised it actually was not done trough external log-in but probarly trough a Hijack, in which they use your actual session. (don't ask me how it works i've got no clue but would like to know)

However i still checked all my security settings, log-ins, etc etc all the good stuff.

The Awards have been sent to over 7 accounts and i saw they all 7 had over 2.000.000 Steam Points given to them trough awards.

Scanned PC for malware and found 2 files that were flagged, of which 1 file was a recent one.
Windows Defender did NOT flag this file however!

If anyone knows how this method works feel free to share in the comments how to protect yourself from it.

This is just mainly a reminder and heads up!

All accounts have the following games:
Apex Legends
CS2
Dota2
Path of Exile
PubG
WarThunder

All these games are last played March 22nd and all have the same hours altho the hours different per account!


Stay safe gamers!
< >
9개 댓글 중 1-9개 표시
cSg|mc-Hotsauce 2024년 12월 26일 오후 12시 45분 
Change/reset your password to revoke those awards that were sent and the points will be returned to you. You have 2 weeks to get this done.

:nkCool:
PurpleHaze 2024년 12월 26일 오후 12시 46분 
cSg|mc-Hotsauce님이 먼저 게시:
Change/reset your password to revoke those awards that were sent and the points will be returned to you. You have 2 weeks to get this done.

:nkCool:

Yeah i rather do it on a device i know that is "clean" tho. So waiting for a friend to bring his laptop hes only ever used for schoolwork.

With this Thread i more hope to have people check their own accounts and make sure they are good. As 14.000.000 Points got added over the span of 24 hours on those 7 accounts spread, i know there is more people with the same issue but might not notice it.
PurpleHaze 님이 마지막으로 수정; 2024년 12월 26일 오후 12시 48분
Wolf Knight 2024년 12월 26일 오후 12시 50분 
make sure you secure the account

your account is compromised
DO NOT TRADE
If you have access to the account

Steps to take NOW to secure the account:
1. Scan for malware https://www.malwarebytes.com/
2. Deauthorize all other devices https://store.steampowered.com/twofactor/manage
3. Change passwords from a clean computer
4. Generate new backup codes for your Mobile App https://store.steampowered.com/twofactor/manage
5. Revoke the API key https://steamcommunity.com/dev/apikey (there should be nothing in the APIKEY)
6. If points were stolen, do a password RESET to cancel the awards/points before they are delivered

figure out how you gave away the log in.

sadly, this kind of thing is posted about multiple times a day in multiple forums.
PurpleHaze 2024년 12월 26일 오후 12시 54분 
Wolf Knight님이 먼저 게시:
make sure you secure the account

your account is compromised
DO NOT TRADE
If you have access to the account

Steps to take NOW to secure the account:
1. Scan for malware https://www.malwarebytes.com/
2. Deauthorize all other devices https://store.steampowered.com/twofactor/manage
3. Change passwords from a clean computer
4. Generate new backup codes for your Mobile App https://store.steampowered.com/twofactor/manage
5. Revoke the API key https://steamcommunity.com/dev/apikey (there should be nothing in the APIKEY)
6. If points were stolen, do a password RESET to cancel the awards/points before they are delivered

figure out how you gave away the log in.

sadly, this kind of thing is posted about multiple times a day in multiple forums.

Yeah its sad to read it hapens so often. It also doesn't show a log-in from a different location. Which makes me believe they actually sort of "clone" your device.

No API
No weird Log-ins or locations
No Unknown devices
Etc Etc
PurpleHaze 님이 마지막으로 수정; 2024년 12월 26일 오후 12시 55분
dreamin 2024년 12월 30일 오후 3시 58분 
Just happen to me!!!! I do everything to make sure that my account is safe how tf they can take my points like this ?!!!
Aluvard 2024년 12월 30일 오후 4시 00분 
dreamin님이 먼저 게시:
Just happen to me!!!! I do everything to make sure that my account is safe how tf they can take my points like this ?!!!
Malware or phishing.
wesnef 2024년 12월 30일 오후 4시 06분 
Why would anyone want to steal steam points?
Aluvard 2024년 12월 30일 오후 6시 07분 
wesnef님이 먼저 게시:
Why would anyone want to steal steam points?
Carrot to dangle in front of other victims? "You will get x Steam points for free, just log in here".
Eagle_of_Fire 2024년 12월 30일 오후 10시 31분 
wesnef님이 먼저 게시:
Why would anyone want to steal steam points?
Apparently there is a loophole in some games where you can use points to end up, at the end of a contrived chain of events, with real life cash in your hands?
Eagle_of_Fire 님이 마지막으로 수정; 2024년 12월 30일 오후 10시 32분
< >
9개 댓글 중 1-9개 표시
페이지당 표시 개수: 1530 50

게시된 날짜: 2024년 12월 26일 오후 12시 43분
게시글: 9