European Steam hardware customers are at risk of scam emails and messages following a data breach at CEVA Logistics, a company that ships Valve's products to the region. The breach, which occurred between July 29 and August 1, likely compromised personal data including names, addresses, phone numbers, emails, and order details. Valve learned of the breach on August 7 and has since warned affected customers to be vigilant for fake messages that may appear to come from Steam, Valve, or a delivery company.
According to Valve, the stolen information does not include payment information, passwords, Steam Guard codes, or other sensitive data, as CEVA Logistics does not have access to this information. As a result, affected users do not need to change their Steam passwords or account details. However, they should be cautious of messages that use sensitive information to convince them to pay for customs or redelivery fees, or to sign into something to verify their order.
Valve is pressing CEVA Logistics for more information on the breach and is in the process of notifying data protection authorities in the affected countries. The company's warning to customers highlights the potential for scam emails and messages to follow the data breach, and serves as a reminder of the importance of vigilance in protecting personal data.
Looking ahead, Valve's response to the breach will be closely watched, particularly in terms of its efforts to notify and protect affected customers. The breach is a reminder of the risks associated with data sharing and the importance of robust security measures to protect sensitive information. As the situation develops, Valve's actions will be crucial in mitigating the impact of the breach and restoring trust with its customers.