Valve warns Steam Machine buyers after CEVA logistics breach

Valve warns European Steam Machine buyers that personal data was exposed in a CEVA Logistics cyberattack. Payment info and passwords remain secure.

Valve warns Steam Machine buyers after CEVA logistics breach

Valve has confirmed a security breach affecting the European logistics network for Steam Machines and Controllers. The incident compromises personal data for customers who ordered hardware through the third-party handler CEVA Logistics. Buyers in Europe should monitor their inboxes for phishing attempts impersonating Valve or delivery services.

CEVA Logistics breach exposes customer details for European hardware orders

The breach occurred between July 29 and August 1, 2026, when CEVA Logistics systems were accessed by unauthorized parties. Valve received notification of the attack on August 7, 2026, and is now alerting affected customers. The company identified CEVA as the specific point of failure in the shipping supply chain.

Compromised records contain names, addresses, phone numbers, email addresses, and order details for Steam hardware. Payment information, Steam passwords, and Steam Guard codes were not accessed during the intrusion. This distinction means financial data remains secure, but personal contact details are exposed.

Valve advises users to remain vigilant against phishing scams rather than changing their Steam passwords immediately. The company states that the breach did not touch login credentials or payment methods. Customers should verify the authenticity of any emails claiming to be from Valve or CEVA before clicking links.

Discussion

0 comments

Log in to join the thread with a thoughtful take, question, or correction.

Add to the discussion