Games Steam hacked...

MYstIC G

Official Licensed Lump of Coal™ Distributor
Staff member
Moderator
FH Subscriber
Joined
Dec 22, 2003
Messages
12,379
Because you're missing my point that many people are stupid and use the same password for things that you shouldn't, e.g. e-mail account and say online banking login.

If Valve were being truly brilliant about security then they'd encourage people to change both forum and steam passwords and they wouldn't make it just a crappy little announcement that you only get if you go to the steam forums but it'd be on the front page when you open the steam website, the client (which is always happy to pop up something to pimp to you) and be e-mailed to everyone.
 

Calaen

I am a massive cock who isn't firing atm!
Joined
Dec 22, 2003
Messages
9,538
Not alot anyone can do about that really is there :p
 

Talyn

Can't get enough of FH
Joined
Dec 31, 2003
Messages
608
IMeWI.png
 

Billargh

I am a FH squatter
Joined
Oct 29, 2007
Messages
6,481
I have no idea what is happening but that sounds positive, maybe I won't have to change my bank bumf after all.
 

rynnor

Rockhound
Moderator
Joined
Dec 26, 2003
Messages
9,353
Sounds like the hackers got a fat load of un-decryptable data - waste of their time - good work Steam.
 

Deebs

Chief Arsewipe
Staff member
Moderator
FH Subscriber
Joined
Dec 11, 1997
Messages
9,076,937
Sounds like the hackers got a fat load of un-decryptable data - waste of their time - good work Steam.
Yup looks that way. It looks like they used SHA256 for their hashes. Unfortunately it will not protect those that use simple passwords. One thing I would love to know is did Steam create a random salt per account? If so then I will be very happy :)
 

Chilly

Balls of steel
Joined
Dec 22, 2003
Messages
9,046
If they didnt use a unique salt per pw then you can quite easily crack the encryption anyway since the key would be known. AES254 is a stream cipher, not a hash. Since passwords follow a well known distribution of shitness, you can be quite sure than a reasonable proportion of the plaintext is known, at least in a statistical sense.

/edit - by easily I mean it's not totally impossible ;)
 

ECA

I am a FH squatter
Joined
Dec 23, 2003
Messages
9,439
That screenshot is a photoshop anyway btw.
 

Users who are viewing this thread

Top Bottom