Skip to content
Tech News
← Back to articles

Steam hardware shipper breach leaks customer data, including names and addresses

read original more articles
Why This Matters

The breach of customer data by CEVA Logistics, affecting European Steam hardware buyers, highlights the ongoing risks of data security lapses in supply chain partnerships. This incident underscores the importance for tech companies and consumers to remain vigilant against potential scams and phishing attempts following data breaches. It also emphasizes the need for robust security measures and clear communication from companies to protect user information and prevent fraud.

Key Takeaways

is a news writer who covers the streaming wars, consumer tech, crypto, social media, and much more. Previously, she was a writer and editor at MUO.

Posts from this author will be added to your daily email digest and your homepage feed.

Valve says a data breach may have exposed the personal information of customers who ordered its Steam hardware in Europe. In an email sent to users, Valve says its European shipping partner, CEVA Logistics, suffered a data breach that may have included customer names, addresses, phone numbers, and email addresses.

The breach at CEVA occurred between July 29th and August 1st, weeks after Valve began taking reservations for its new Steam Machine and Steam Controller. Valve adds that European customer data “was likely compromised” as part of the breach, as CEVA stores “delivery-related information” for up to 90 days after orders.

Previous Next

1 / 3 Image: The Verge

As a result of the breach, Valve says to “expect fake messages” over email, text, or on the phone that claim to come from Steam, Valve, or a delivery company. “They may quote your address back to you to prove they’re genuine. They may ask you to confirm a delivery, pay a small customs or redelivery fee, or sign in somewhere to “verify” your order,” Valve says. “Treat all of them as fake.”

The notice says additional data linked to users’ Steam accounts or purchases wasn’t impacted, adding that CEVA “does not have access to your payment information, passwords, Steam Guard codes or other information.” Valve notes that it only deals with account issues from help.steampowered.com, and won’t contact users over email, Steam chat, or Discord.