Valve’s shipping partner leaks shipping data in a cyberattack — including the names, addresses, and phone numbers of Steam Machine and Steam Controller buyers
windowscentral.com Aug 10, 2026

Valve’s shipping partner leaks shipping data in a cyberattack — including the names, addresses, and phone numbers of Steam Machine and Steam Controller buyers

AI-summarised brief · reviewed before publication

Valve confirmed that its European shipping partner CEVA Logistics suffered a cyberattack on August 7, exposing names, addresses and phone numbers of customers who bought Steam Machines or Steam Controllers in Europe. The breach does not include payment data, passwords or Steam Guard codes, and Valve says accounts remain secure. CEVA’s compromised system has been taken offline while the company works with data‑protection authorities to assess the scope. Affected users have received warning emails urging vigilance against phishing messages that impersonate Steam, Valve or delivery services. Valve advises customers to contact support only through the official website and to treat any unsolicited requests for money as fraudulent. No customers outside CEVA’s European operations are believed to be impacted as of now.

💡 Why It Matters

  • · The leak gives scammers a trove of personal details that can be weaponized for targeted identity‑theft attacks, turning a hardware purchase into a broader privacy risk.