Valve has refuted recent claims regarding a "major" data breach on its Steam platform, firmly stating there was "NO breach" of Steam systems.
Initial concerns emerged from reports suggesting over 89 million user records may have been exposed. However, Steam's investigation revealed that while some outdated SMS messages containing one-time codes were leaked, this data didn't include sensitive personal information.
In an official statement on Steam, Valve clarified: "Our analysis confirms the leaked materials only contained expired verification codes (valid for just 15 minutes) and associated phone numbers. Crucially, these weren't linked to Steam accounts, passwords, payment details, or other private data."
The company emphasized: "These old messages pose no security risk to Steam accounts. For any account changes requiring SMS verification, you'll always receive confirmations through email or Steam's secure messaging system."
Valve strongly recommended enabling Steam Mobile Authenticator for optimal account protection. This provides essential two-factor authentication and secure account notifications.
With growing cybersecurity threats and Steam's massive user base, these concerns were understandable. The gaming industry remembers 2011's catastrophic PlayStation Network outage - a month-long breach affecting 77 million accounts.
Cyber threats extend beyond user data. Recent incidents include:
- Game Freak's 2023 hack exposing employee records and development plans
- Sony's data breaches that year compromising nearly 7,000 staff records
- Insomniac Games' December 2023 security incident leaking Marvel's Spider-Man development materials