and here's a new one , just got this from a friend , the message wud be like this :
"Hi, can you spin this roulette <LINKREMOVED-JUSTINCASE> ? If GTA V, PUBG or CSGO falls out, I can buy the key from you. Try it, it will take no more than 30 seconds. You go -> press the ROLL button, a free game falls out -> you take the key and write to me) Well, or you activate the game on your account) "
and seems it has been around for a while too :
https://steamcommunity.com/discussions/forum/1/2789318172125126720/
so it's definitely a malware, and don't even think of click on the link on the message!
Comment has been collapsed.
There is easy protection from this: don't open links from unknown people. And if message was sent by Your friend... yeah, basically You know what Your friend WOULDN'T write, right? If I got messages like this, even from my friends, I would know it's fake.
Also triple check the address. Always.
Comment has been collapsed.
and I'm lucky I got out of that with only 1 blacklist
Comment has been collapsed.
I sent a friendly note to HB about one of these scam sites using their HB logo and claiming that they are being sponsored by HB. According to the response I got, HB is putting their (legal?) team on it -- hopefully they can help stop the scam at the source. Would be great to prevent others from falling into the trap! Stay safe, everyone!
Comment has been collapsed.
fanatical now have a response about mass account hijacking this time.
https://www.fanatical.com/en/blog/how-to-recover-a-stolen-or-hijacked-steam-account
https://twitter.com/Fanatical/status/1095663914229075968
fanatical GJ!
Comment has been collapsed.
Comment has been collapsed.
I have seen images of users replying to the phishing bot in chat. Why even when the other party is not able to/will not comment? Dont put yourself at risk of any kind even by replying. You might accidentally click on the link when exiting the chat and then accidentally fall into a trap which could be why it had been so widespread. Cheers, Cruse~
Comment has been collapsed.
Still going on... I just got sent the link to one of those roulette sites from a friend with a 100+ level account. Hopefully he can get it back quickly.
Fortunately I'm always suspicious when something seems too good to be true and did a quick search to see if the site was legit. Turned up this discussion near the top of the page.
Comment has been collapsed.
And the hits keep coming...
A friend of mine on Steam just got hacked as his account is sending me links to these now. His account has been sending me links ever half hour since since 6:39 PM EST.
Comment has been collapsed.
I think they started on steam forums promising free CSGO skins. From there they don't just hijack your account and trade your skins away, they use those stolen accounts to keep posting in that thread to make it look more legit.
To a new user, it will look really tempting to try and get new skins.
https://steamcommunity.com/app/730/discussions/0/3247565033768757041/
Comment has been collapsed.
That's the one.
They aren't doing anything about it. The longer that thread stays alive, more accounts will get phished.
Comment has been collapsed.
Wow! That thread is getting longer and longer! I click on "last page", scroll down, and then there are one (or more) new pages already! Insane that Valve is doing NOTHING about it!!
Comment has been collapsed.
my friend account hacked this new site dagamesrollx(dot)com and takedagame(dot)com its same site rolldatgame(dot)com https://gyazo.com/2624f9635725dce8cae207e950142cd3
Comment has been collapsed.
yes if you search the site in scamadviser.com its domain age 2 days
Comment has been collapsed.
Yea another person from my friends list got hacked the other day. Didn't realize this was still ongoing until then.
Comment has been collapsed.
It has never stopped from going on, they just change the address, whatever useless crap they promise you will get and where it gets spammed. It wont stop until people stop falling for them, just like some people still believe in spam emails about foreign riches no matter how much the media tries to warn about it.
Comment has been collapsed.
No he's legit, I checked with my good friend the Nigerian Trade Emperor.
Closest I've come to a believable one was when I was quite high and they offered me a free box of new flavor of potato chips every month for product testing if I just enter my card info. Shame it was all in Swedish and I don't make deals with djävuls.
Comment has been collapsed.
Check out the CSGO forums. Shit just hit the fan. So many accounts got jacked.
Comment has been collapsed.
This has been going on since 2012. In fact, in CSGO lounge in the old days, everytime you bump your thread some scums will add you and tell you to click a screenshot or his friend wants to trade with you.
Comment has been collapsed.
Hey, m8!Get a free random game (GTA V, PUBG, CSGO and more) on https://t.co/<link-shortner used> for new users, full legit and no deposit
OOOOf... I guess this still going on...
I'm sure it's not going to be an avalanche-like a few months back, but still - Beware
Comment has been collapsed.
Yep. Got that message from 1 friend (so far?). Suspicious that their account has closed comments on the page. Probably to prevent people from warning others that the account has been compromised.
Comment has been collapsed.
I got that one, followed by this one from the same user:
Brother, tell me what game you won?
If GTA V, PUBG or CSGO falls out, I can buy the key from you
https://t.co/<redacted>
Comment has been collapsed.
82 Comments - Last post 16 minutes ago by WaxWorm
56 Comments - Last post 2 hours ago by Carenard
1,811 Comments - Last post 3 hours ago by ngoclong19
72 Comments - Last post 5 hours ago by Reidor
545 Comments - Last post 7 hours ago by UltraMaster
41 Comments - Last post 7 hours ago by ViToos
1,520 Comments - Last post 8 hours ago by ayuinaba
48 Comments - Last post 1 minute ago by seboleq97
111 Comments - Last post 8 minutes ago by Fitz10024
181 Comments - Last post 18 minutes ago by Fitz10024
115 Comments - Last post 19 minutes ago by cheeki7
91 Comments - Last post 26 minutes ago by softbearcas
54 Comments - Last post 1 hour ago by Kyog
26 Comments - Last post 1 hour ago by Tzaar
Since yesterday new wave of phishing attack spreads through Steam chat.
Works similar to previous attacks:
Do not click on any links, that are sent with this message:
Or this:
Or this:
1. Can SteamGifts support staff can help me to recover my Steam account?
First of all we're unable to help you, as we're not connected with Steam Support.
All we can do is suspend your SteamGifts account on your request, so it won't be possible to do any harm here - see keys from ended giveaways, change e-mail, spam discussions, make fake giveaways etc.
You can request to be suspended under 1st post of this PSA. We will suspend you for number of days listed in your request, or give permanent suspension, if you prefer. You can write unsuspend request when you recover ownership of your account, to use SG again before suspension runs out.
If you don't want to suspend your account and have active / not claimed giveaways:
It is not possible to see keys from active giveaways. But when giveaway ends keys are available on /created page. That's why you should click on Modify link next to the key, copy it to secure place (such as txt file) and exchange it with gibberish, or already used key. That way no one, except for you, will be able to see them.
2. What to do when I was phished?
3. How to avoid being phished in the future?
When link redirects you to "Log in with Steam" page (same is true for log in with Facebook, Twitter etc) never write your credentials there.
4. Anything I can do to help my phished friend?
To avoid further spam of phishing messages you can block communication with friend. And unlock it, when friends regain access to account. That way you don't need to remove user from friends to stop seeing messages, and don't cut ties with them.
As pointed here it is possible to report compromised Steam accounts.
You can also report sites, which are used in phishing attempt here:
https://safebrowsing.google.com/safebrowsing/report_phish/?hl=en
https://app.webinspector.com/
https://submit.symantec.com/antifraud/phish.cgi
https://phishing.eset.com/report
Thanks for notice, Nask
1. Do not create new threads about this issue
We don't need to spread information and updates about this attack in multiple threads. It makes it hard to follow current state of situation.
That's why I will close all other threads about this matter. You can inform other users that you were attacked in this thread. No reason to create separate thread for every case.
Also please, don't create new threads in case of future attacks. Stick to posting all relevant information in thread created already by other user.
2. Do not accuse others of being "scammers", as they sent you link to phishing site.
They are victims of this situation, not attackers.
Do not write user reports on them
3. Do not create spam / mocking threads about this issue.
You can post any relevant information here, such as changes in phishing message, change of phishing site address, tips how to recover account, and discuss it in general. I will update this post in my free time. I do not like to cut ongoing discussions in other topics, but it is necessary to keep all information in one place.
Previous PSA posts about this attack:
https://www.steamgifts.com/discussion/HWhcX/psa-accounts-being-hackedphished-in-steam
https://www.steamgifts.com/discussion/TioOP/danger-careful-with-1-free-game-for-new-userstake-the-game-you-want-https-spindatgamexc-no
https://www.steamgifts.com/discussion/GCxxD/a-wave-of-steam-scams-beware-to-not-lose-your-account
https://www.steamgifts.com/discussion/xc8jE/i-fell-into-the-hack
https://www.steamgifts.com/discussion/cnNgf/definitely-not-clickbait-easy-steps-to-avoid-the-next-phishing-attempt-on-your-pc#oRnNU7W
Comment has been collapsed.