A fake Steam skin giveaway site has been created that states it gives away news skins every day, but in reality it just steals your login credentials.
If a user goes to the promoted site they will be shown a pretend ‘$30,000 giveaway’ promotion that contains 26 days of free skin giveaways for Counter-Strike: Global Offensive (CSGO).
This phishing landing page also has a fake running chat screen on the left hand side of the page.If a user falls for the scam and clicks the “Sign in via Steam” button, it will pretend to open the login form from Steam, but will ultimately display a fake Steam login form. While this screen looks like the normal Steam login, any login credentials that are entered will be sent to the attackers instead.
Fake Steam Skin Giveaway Site Steals your Login Credentials – by @LawrenceAbramshttps://t.co/L3GCtQgcR2
— BleepingComputer (@BleepinComputer) December 1, 2019
Experts Comments
Be part of our growing Information Security Expert Community (1000+), please register here.
Linkedin Message
@Stuart Sharp, VP of Solution Engineering, provides expert commentary at @Information Security Buzz.
"While a full solution includes eliminating password reuse, the first step is MFA...."
#infosec #cybersecurity #isdots
https://informationsecuritybuzz.com/expert-comments/comment-fake-steam-site-steals-login-credentials
Facebook Message
@Stuart Sharp, VP of Solution Engineering, provides expert commentary at @Information Security Buzz.
"While a full solution includes eliminating password reuse, the first step is MFA...."
#infosec #cybersecurity #isdots
https://informationsecuritybuzz.com/expert-comments/comment-fake-steam-site-steals-login-credentials