ValveSoftware / Source-1-Games

Source 1 based games such as TF2 and Counter-Strike: Source
649 stars 75 forks source link

[TF2] False game bans though player reporting #6129

Closed coredesu closed 4 months ago

coredesu commented 4 months ago

Hello. There is a "new" exploit for Team Fortress 2, which allows bad actors to give out false game bans to innocent players. I got a game ban without using any cheat software or without using any modification program that gives an advantage.

Why and How?

Ever since Valve reenabled GC player reporting, this system can be abused again to give out false game bans to a target, or in this case, bad actors can build a botnet just to report players. There are no checks implemented in this system that avoid false game bans being given out though. The same cannot be said about Counter-Strike 2 as that game has upgraded anti-cheat that monitors your movement and gameplay and then gives out a game ban.

I wanna know the steps!

This requires the in-game UI "Report Player" to be used. This exploit requires more than 3 players to let Steam Support do something about the said target.

  1. The target can be any target as long as they have a valid STEAMID.
  2. Make sure the report reason is "Cheating". (and make sure your account is premium)
  3. If done right, Steam Support will issue a 4-hour piece on the target before either giving out a game ban or locking the account from its owner.
kisak-valve commented 4 months ago

Hello @coredesu, in general, account issues including game bans are not handled on GitHub in any capacity.

Closing as out of scope for this issue tracker.