Home / Software & Gaming / Security / Dangerous XSS exploit affecting Steam users

Dangerous XSS exploit affecting Steam users

It looks like Steam users might want to be careful when browsing Steam as an XSS exploit has been discovered which can seriously affect account security. The issue was made public earlier today and can allow attackers to inject their own code, which could allow someone to hijack your Steam profile and perform various actions on your account.

Steamdb helped publicise the issue, which amongst other things could allow an attacker to send trade offers, sell or buy marketplace items, post comments, make group announcements, join groups and more all on your profile, bypassing Steam's usual security.

So until Valve fixes this particular exploit, you should be careful when it comes to random friend requests and random links sent via the Steam chat. As of yet, Valve has yet to acknowledge this XSS exploit but hopefully the company will fix it up and make an announcement soon.

KitGuru Says: Stay safe out there guys, the last thing you want is to wake up one day and find all of your marketplace items gone. Hopefully Valve can give us a proper update on this soon. 

Become a Patron!

Check Also

Chinese Steam

Valve confirms Steam has not suffered a data breach

This week, someone claimed to have breached Valve's Steam servers, coming away with account information for over 89 million users. Something seemed a bit fishy about the claim at the time, but now, Valve has confirmed that no data breach has taken place.

3 comments

  1. all the more reason to be rejected by kind people and just be kind to people

  2. Wtf have you been smoking?

  3. Google is paying 97$ per hour! Work for few hours and have longer with friends & family! !mj254d:
    On tuesday I got a great new Land Rover Range Rover from having earned $8752 this last four weeks.. Its the most-financialy rewarding I’ve had.. It sounds unbelievable but you wont forgive yourself if you don’t check it
    !mj254d:
    ➽➽
    ➽➽;➽➽ http://GoogleFinancialJobsCash254MarketHouseGetPay$97Hour ★★✫★★✫★★✫★★✫★★✫★★✫★★✫★★✫★★✫★★✫★★✫★★✫★★✫★★✫★★✫★★✫★★✫★★::::::!mj254d:….,…….

We've noticed that you are using an ad blocker.

Thank you for visiting KitGuru. Our news and reviews teams work hard to bring you the latest stories and finest, in-depth analysis.

We want to be as informative as possible – and to help our readers make the best buying decisions. The mechanism we use to run our business and pay some of the best journalists in the world, is advertising.

If you want to support KitGuru, then please add www.kitguru.net to your ad blocking whitelist or disable your adblocking software. It really makes a difference and allows us to continue creating the kind of content you really want to read.

It is important you know that we don’t run pop ups, pop unders, audio ads, code tracking ads or anything else that would interfere with the KitGuru experience. Adblockers can actually block some of our free content, such as galleries!