主页

Steam Security Guide: Protecting Against Common Scams

1. API Key Scam / API 密钥劫持诈骗

[中文]:这是最危险的诈骗方式。诈骗者通过钓鱼网站诱导您登录并获取您的 Steam API 密钥。当您发起交易时,诈骗机器人会立即取消原始交易,并伪造一个完全相同的虚假报价发送给您。

[English]: This is the most dangerous type of scam. Scammers use phishing sites to trick you into logging in and then steal your Steam API key. When you initiate a trade, a bot automatically cancels the original offer and sends a counterfeit one that looks identical.

防御建议 / Pro-Tip: 永远不要在非官方网站输入 API 密钥;定期前往 Steam 官方页面重置您的 API Key。

2. Admin or Support Impersonation / 冒充管理或客服

[中文]:诈骗者会伪装成 Steam 客服、平台管理员或知名的饰品中介(Middleman)。他们通常声称您的账户存在“异常”或需要“验证饰品”,要求您将饰品发送至其指定的“安全账户”。

[English]: Scammers impersonate Steam Support staff, platform admins, or reputable middlemen. They often claim your account has "irregularities" or items need "verification," instructing you to send your skins to a designated "secure account."

防御建议 / Pro-Tip: 官方客服永远不会通过私人聊天、Discord 或 Steam 报价要求您发送饰品。

3. Tournament or Voting Scams / 锦标赛或投票诈骗

[中文]:诈骗者会通过私聊发送链接,邀请您为他们的“战队”投票,或者参加虚假的电子竞技锦标赛。点击链接进入的页面通常是伪装成 Steam 登录框的钓鱼页面。

[English]: Scammers send links via private messages, inviting you to vote for their "team" or participate in a fake eSports tournament. The link leads to a phishing page designed to mimic the Steam login window.

防御建议 / Pro-Tip: 对任何来自陌生人的“点击链接并登录”请求保持最高警惕。

4. Fake Item-to-Cash Trades / 虚假饰品换现金

[中文]:诈骗者承诺通过 PayPal、支付宝或其他现金方式购买您的饰品,但在您发送饰品后,他们会拒绝支付或发起恶意退款。

[English]: Scammers promise to buy your skins via PayPal, Alipay, or other cash methods. Once you send the items, they refuse to pay or initiate a fraudulent chargeback.

防御建议 / Pro-Tip: 仅使用受信任的第三方平台(如本站或专业饰品交易市场)进行交易,避免私人现金转账。

5. Friend Impersonation / 冒充好友诈骗

[中文]:诈骗者会克隆您好友的昵称和头像,并以此身份发起交易或索要饰品。

[English]: Scammers clone the nickname and profile picture of someone on your friend list, then use this identity to initiate trades or request items.

防御建议 / Pro-Tip: 发起交易前,务必核对好友的 Steam 等级、注册时间和库存状态。