my account may got hajicked but i'm safe, however....
for context: i woke up on july 3, opened my steam account and i checked that i have a booster pack on my account, i said to myself. "hmm weird, i haven't had a booster pack for like 4 years" didn't think of it that much, i unpack it and i moved on. but i also checked my display badge and it wasn't the one that i always display...

later today, i checked my gmail and it said.
"New sign in to Steam
From your account
Location of sign in:
Al Khankah, Al Qalyubiyah, EG
Authorized by:
Steam Mobile Authenticator confirmation
If the details above look familiar, you can safely ignore this email."

and i got alerted so much because i live in Cairo governorate, not in Qalyubiyah.
rn i'm re-editing my password but i wanna know WHY they played around my account and got a booster pack like... they could have just took my account right away
引用自 Ettanin:
引用自 undead2020
ty for you helps mates. but still i'm confused of why the hijacker messed around and bought booster cards and such. and also how did they enter by steam mobile authenticator?
they bypassed it by stealing your session token through malware or by you entering your credentials on a fraudulent site and the site forwarding the input to the steam servers to then keep a session token.
< >
目前顯示第 1-6 則留言,共 6
引用自 undead2020
rn i'm re-editing my password

Deauthorize all other devices and change your password again.
If you believe your account is compromised, do the following steps in order to secure it. If you've already changed your password then you will need to do it again.

1. Scan for malware https://www.malwarebytes.com/
2. Deauthorize all other devices https://steamhost.cn/twofactor/manage
3. Change passwords once the device you are using is 100% secure
4. Generate new backup codes for your Mobile App https://steamhost.cn/twofactor/manage
5. Revoke the API key https://steamhost.cn/steamcommunity_com/dev/apikey (there should be nothing in the APIKEY)
ty for you helps mates. but still i'm confused of why the hijacker messed around and bought booster cards and such. and also how did they enter by steam mobile authenticator?
此討論串的作者認為本留言為原主題提供了解答。
引用自 undead2020
ty for you helps mates. but still i'm confused of why the hijacker messed around and bought booster cards and such. and also how did they enter by steam mobile authenticator?
they bypassed it by stealing your session token through malware or by you entering your credentials on a fraudulent site and the site forwarding the input to the steam servers to then keep a session token.
引用自 J4MESOX4D
If you believe your account is compromised, do the following steps in order to secure it. If you've already changed your password then you will need to do it again.

1. Scan for malware https://www.malwarebytes.com/
https://steamhost.cn/twofactor/manage

is there any other alternative? malwarebytes is blocked in my country
引用自 undead2020
is there any other alternative? malwarebytes is blocked in my country

You can use any antivirus program that can scan your computer for malware. Do you have an antivirus programm?
< >
目前顯示第 1-6 則留言,共 6
每頁顯示: 1530 50