Steam Forums Offline After Security Breach

Hectic Glenn

Site Director
Staff member
Joined
Aug 8, 2004
Messages
12,233
Reaction score
241
As you may have noticed today, the Steam powered user forums are 'temporarily offline for maintenance'. Earlier today the forums were rebranded with links to the Fkn0wned forum, seemingly taking responsibility for the hack. A statement from Fkn0wned denies any involvement claiming they are not responsible.[br]The forums remain offline while Valve investigate the attack and attempt to narrow down those responsible. Valve do not store Steam log in information connected with your Steam forum account, therefore you need not worry about potential security threats to your Steam account. However if you are one of those people who likes using the same password for most things, it can't hurt to be careful and change your password. While you're doing that, turn on <a href="http://www.halflife2.net/2011/03/16/steam-guard-now-available-to-all-users/]Steam Guard[/url] to be really secure.
 
Suddenly, Episode 3 is leaked.
 
I have always been annoyed that I couldn't log into the forums with my Steam account. Until today.
 
Fkn0wned say they didn't do it. Of course, it's kind of retarded to label a hack like that when you're traceable to a publicly available forum. Someone was probably mad.
 
So was this a really stupid kid trying to help the cheats forum or someone trying to hurt them?
 
How would putting media attention on a forum for cheats help anyone?
 
Probably just some kid letting off steam.
 
Yeah, whoever it was, was probably just venting.
 
Here's another image that was screenshotted from the hacked forums:
http://i17.photobucket.com/albums/b59/ptv_graphics/Mobile Uploads/2011-11-06_190851.jpg

Hopefully they simply managed to compromise that one admin account, instead of the database itself. It will be disastrous for Valve if all of the forum accounts are compromised. If you use the same login info for the Steam forums as you do here on Hl2.net it might be wise to change it just in case :)
 
Yeah that's like saying 'hey! come press charges against us!', fkn0wned aren't quite that stupid.
 
i just hope the steam forums are back up soon because i wanted to hear what people thought about postal 3 finaly coming out on steam next month :(
 
Here's another image that was screenshotted from the hacked forums:
http://i17.photobucket.com/albums/b59/ptv_graphics/Mobile Uploads/2011-11-06_190851.jpg

Hopefully they simply managed to compromise that one admin account, instead of the database itself. It will be disastrous for Valve if all of the forum accounts are compromised. If you use the same login info for the Steam forums as you do here on Hl2.net it might be wise to change it just in case :)

I do like that they say the site offers free giveaways. What would that be exactly, free viruses or trojans, on your own computer?

i just hope the steam forums are back up soon because i wanted to hear what people thought about postal 3 finaly coming out on steam next month
Yeah, that kinda threw me off too, I thought it was released like a year ago. Obviously I was wrong.
 
Here's another image that was screenshotted from the hacked forums:
http://i17.photobucket.com/albums/b59/ptv_graphics/Mobile Uploads/2011-11-06_190851.jpg

Hopefully they simply managed to compromise that one admin account, instead of the database itself. It will be disastrous for Valve if all of the forum accounts are compromised. If you use the same login info for the Steam forums as you do here on Hl2.net it might be wise to change it just in case :)
Porn! **** yeah! Sign me up.

Yeah that's like saying 'hey! come press charges against us!', fkn0wned aren't quite that stupid.
Doesn't mean some kid (after all, isn't that main demographics hacks are aimed at?) who was a member of the site and didn't understand just what he was doing thought it would be great publicity for the site and managed to get jmccaskey's password somehow.
 
Do you really need to advertise that porn is available through your website? It's the most common thing on the Internet, I think you're better off focusing on what you provide that isn't everywhere. It's like advertising for a restaurant saying: "Come on down and enjoy our steak, chicken, and try our all new air!"
 
The following is being IM'd to the Steam user base.

----------------------

Dear Steam Users and Steam Forum Users,

Our Steam forums were defaced on the evening of Sunday,November 6. We began investigating and found that the intrusion goes beyond the Steam forums.

We learned that intruders obtained access to a Steam database in addition to the forums. This database contained information including user names, hashed and salted passwords,game purchases,email addresses,billing addresses and encrypted credit card information. We do not have evidence that encrypted credit card numbers or personally identifying information were taken by the intruders,or that the protection on credit card numbers or passwords was cracked. We are still investigating.

We don't have evidence of credit card misuse at this time. Nonetheless you should watch your credit card activity and statements closely.

While we only know of a few forum accounts that have been compromi9sed, all forum users will be required to change their passwords the next time they login. If you have used your Steam forum password on other accounts you should change those passwords as well.

We do not know of any compromised Steam accounts,so we are not planning to force a change of Steam account passwords (which are separate from forum passwords). However,it wouldn't be a bad idea to change that as well,especially if it is the same as your Steam forum account password.

We will reopen the forums as soon as we can.

I am truly sorry this happened,and I apologize for the inconvenience.

Gabe.
 
I'm guessing steamguard will protect our steam accounts. Just need to keep an eye on my bank account.
 
I'm guessing steamguard will protect our steam accounts. Just need to keep an eye on my bank account.

Just make sure you are not using the same password for you email account, otherwise Steamguard would be useless
 
Back
Top