Valve Warns of Possible Data Breach Affecting European Steam Hardware Users

The gaming company has cautioned that fraudulent emails may arise following the data breach.
European users of Steam hardware are advised to remain vigilant for potential scam communications after Valve revealed that some personal data of their customers may have been compromised due to a recent cyberattack. In a notification sent to those affected, Valve indicated that a partner responsible for distributing its Steam hardware in Europe, CEVA Logistics, experienced a data breach between July 29 and August 1. The company was made aware of this incident on August 7, reporting that the confidential information of Steam users was “likely compromised.”
The compromised details reportedly include names, addresses, phone numbers, emails, and order information. However, Valve reassured customers that CEVA does not have access to sensitive data such as payment information, passwords, or Steam Guard codes. As a result, affected users are not required to change their Steam passwords or any account details.
Looking forward, Valve cautioned in its notification that some customers might encounter deceptive messages—whether by email, SMS, or phone—that refer to their hardware orders and seem to be sent from Steam, Valve, or a shipping company. These fraudulent communications may exploit sensitive information like addresses or order details to trick users into paying for supposed customs fees or redelivery charges, or to entice them to log in for order verification purposes. Valve stated it is actively seeking further clarification from CEVA regarding the extent of the breach and is in the process of notifying data protection authorities in the relevant countries.



