Then it wasn't hacked, he literally gave the info. I never understand how people can even fall for these.
some of the phishing sites look pretty convincing and they look just like a normal steam site. some easy ways to detect it as being a phishing site is the URL which normally has 1 character changed. ex: steamcommunlty.com or there is not green lock in the URL bar saying that this site is secure and connected to valve corp
And how exactly would this hacker retrieve a file from your computer
for all we know this is the hijacker speaking!
That's not my point. I meant how would one even find one? Some random friend messaging you on steam and for some reason you actually go to it and type in all your info without at least looking at the url? Especially with how many phishing sites there are you'd think people would be far more careful.