my account may got hajicked but i'm safe, however....
for context: i woke up on july 3, opened my steam account and i checked that i have a booster pack on my account, i said to myself. "hmm weird, i haven't had a booster pack for like 4 years" didn't think of it that much, i unpack it and i moved on. but i also checked my display badge and it wasn't the one that i always display...

later today, i checked my gmail and it said.
"New sign in to Steam
From your account
Location of sign in:
Al Khankah, Al Qalyubiyah, EG
Authorized by:
Steam Mobile Authenticator confirmation
If the details above look familiar, you can safely ignore this email."

and i got alerted so much because i live in Cairo governorate, not in Qalyubiyah.
rn i'm re-editing my password but i wanna know WHY they played around my account and got a booster pack like... they could have just took my account right away
İlk olarak gönderen kişi: Ettanin:
İlk olarak undead2020 tarafından gönderildi:
ty for you helps mates. but still i'm confused of why the hijacker messed around and bought booster cards and such. and also how did they enter by steam mobile authenticator?
they bypassed it by stealing your session token through malware or by you entering your credentials on a fraudulent site and the site forwarding the input to the steam servers to then keep a session token.
< >
6 yorumdan 1 ile 6 arası gösteriliyor
İlk olarak undead2020 tarafından gönderildi:
rn i'm re-editing my password

Deauthorize all other devices and change your password again.
If you believe your account is compromised, do the following steps in order to secure it. If you've already changed your password then you will need to do it again.

1. Scan for malware https://www.malwarebytes.com/
2. Deauthorize all other devices https://steamhost.cn/twofactor/manage
3. Change passwords once the device you are using is 100% secure
4. Generate new backup codes for your Mobile App https://steamhost.cn/twofactor/manage
5. Revoke the API key https://steamhost.cn/steamcommunity_com/dev/apikey (there should be nothing in the APIKEY)
ty for you helps mates. but still i'm confused of why the hijacker messed around and bought booster cards and such. and also how did they enter by steam mobile authenticator?
Bu konunun sahibi, bu iletinin ilk konuyu cevapladığını belirtti.
İlk olarak undead2020 tarafından gönderildi:
ty for you helps mates. but still i'm confused of why the hijacker messed around and bought booster cards and such. and also how did they enter by steam mobile authenticator?
they bypassed it by stealing your session token through malware or by you entering your credentials on a fraudulent site and the site forwarding the input to the steam servers to then keep a session token.
İlk olarak J4MESOX4D tarafından gönderildi:
If you believe your account is compromised, do the following steps in order to secure it. If you've already changed your password then you will need to do it again.

1. Scan for malware https://www.malwarebytes.com/
https://steamhost.cn/twofactor/manage

is there any other alternative? malwarebytes is blocked in my country
İlk olarak undead2020 tarafından gönderildi:
is there any other alternative? malwarebytes is blocked in my country

You can use any antivirus program that can scan your computer for malware. Do you have an antivirus programm?
< >
6 yorumdan 1 ile 6 arası gösteriliyor
Sayfa başına: 1530 50