Valve recently issued a serious warning to its European customers. A cyberattack recently compromised CEVA Logistics. This partner company handles the distribution of Steam hardware across Europe. The unauthorized network access occurred between July 29 and August 1. Subsequently, CEVA notified Valve about the security incident regarding the theft of Steam hardware data on August 7.
CEVA quickly isolated its affected systems and pulled them offline. Furthermore, the logistics company engaged outside investigators to evaluate the situation. Meanwhile, Valve is actively pressuring CEVA to determine the exact scope of the breach. Valve is also notifying data protection authorities across the impacted nations.
What Information Did Hackers Steal?
CEVA Logistics stores delivery information for up to 90 days after a customer orders a hardware device. Therefore, Valve is currently contacting European buyers who purchased a Steam Machine, Steam Controller, or similar device within that specific timeframe.
The exposed data likely includes real names, full street addresses, countries, and phone numbers. The breach also leaked the email addresses tied to users’ Steam accounts. Additionally, hackers accessed the specific type and price of the ordered hardware.
Fortunately, the cyberattack did not compromise any sensitive financial information. Passwords and Steam Guard codes remain perfectly safe. Other Steam account details completely unrelated to hardware orders also remain unaffected. Consequently, Valve explicitly stated that users do not need to change their Steam passwords.
Beware of Phishing Scams
Hackers will likely use this leaked information to launch targeted phishing campaigns. Customers should expect fraudulent communications via email, SMS, or phone calls. These fake messages will pretend to come from Valve, Steam, or a delivery courier. Scammers might even recite a user’s compromised address to appear legitimate.
These malicious messages often ask targets to confirm a delivery or pay a fake customs fee. Sometimes, they ask users to log into a fraudulent website to verify an order. Valve instructed users to dismiss all such requests immediately.
Official Steam Support only addresses account problems at help.steampowered.com. They never use email, Steam Chat, or Discord for support. Genuine Steam login portals include store.steampowered.com, www.steampowered.com, steamcommunity.com, or help.steampowered.com. Furthermore, Steam Support and delivery couriers will never request your password.
Steam Hardware Market Troubles
This data breach arrives during a turbulent time for the gaming hardware market. Securing a Steam Controller remains incredibly difficult. Furthermore, an ongoing DRAM shortage is causing major price inflation. Despite this, consumer demand for the Steam Machine continues to grow.
Currently, the most affordable version of the Steam Machine costs $1,049. This makes it $150 more expensive than a PS5 Pro console. Valve warned that the escalating RAM crisis could drive the Steam Machine’s price even higher.
However, Valve still actively supports its other hardware products. The Steam Deck recently received new features, including experimental AV1 video codec streaming and HDR support via Steam Remote Play.
Finally, Steam users are not the only gamers facing recent security threats. In May 2026, hackers compromised several PlayStation Network accounts using only a PSN account ID and transaction details. Gamers must remain vigilant across all platforms.
