• Pechente@feddit.de
    link
    fedilink
    English
    arrow-up
    102
    ·
    9 months ago

    Someone contacted me on Steam and asked if I wanted to play TF2 with him. It was one of my most played games at the time and I had a TF2 avatar, so no surprises here.

    That person later asked me to rate their TF2 team on some website. Didn’t care first but did it eventually. The website needed Steam auth but just faked the Steam auth and relayed every bit of information you entered to steal your account.

    Quickly realized my mistake and reset my password before anything happened. Im still surprised how much effort went into this fake rating site just to steal some Steam accounts.

    • Ironfacebuster@lemmy.world
      link
      fedilink
      arrow-up
      25
      ·
      edit-2
      9 months ago

      Something similar to this happened to me but I think it was for CSGO. The steam sign in page was a fake popup window inside the main website, draggable and all. I realized it was fake when I noticed it was light theme while my computer was dark theme.

      Edit: I realized it was fake before I signed in, luckily

    • SkaveRat@discuss.tchncs.de
      link
      fedilink
      arrow-up
      22
      ·
      9 months ago

      Had some Steam based scammer a couple months ago. I basically instantly suspected a scam and played along, trying them to waste time.

      Sadly, they didn’t play along that much and ghosted me :(

    • Cratermaker@discuss.tchncs.de
      link
      fedilink
      arrow-up
      11
      ·
      9 months ago

      I have basically the same story, except it was one of my actual friends on Steam asking me to rate their CS:GO team. I fell for it since I was trying to be nice, and luckily changed my password before they could turn around and use my account for the same thing.

    • saltesc@lemmy.world
      link
      fedilink
      arrow-up
      5
      arrow-down
      1
      ·
      9 months ago

      I haven’t changed my Steam password since I got an account many, many, many years ago. No idea what it is anymore—something really short and basic—but other people do. I get two-factor hits all the time 🤣