You can make a difference in the Apple Support Community!

When you sign up with your Apple Account, you can provide valuable feedback to other community members by upvoting helpful replies and User Tips.

Looks like no one’s replied in a while. To start the conversation again, simply ask a new question.

iTunes store account hacked

I'm posting this just to share my story and get reactions. It's a little detailed but I thought worth sharing.

On November 23, 2010 I purchased a single song from the iTunes store for .99. I used store credit that I had from a gift card I received last year. It was the first purchase I had made since July 2010.

On November 25, 2010 I received a receipt for 2 more separate orders to my account. These were for over $50 in iPhones apps. Here's a sampling of some of the purchases:

1 eREAD isoshu, v1.5, Seller: ChengDu YueTong Internet Information Co. Ltd (17+)
2 Plants vs. Zombies, v1.3, Seller: PopCap Games, Inc. (iDP)
3 Monkey Island 2 Special Edition: LeChuck's Revenge, v1.1, Seller: Lucasfilm International Services Inc.
4 Asphalt 5, v1.2.6, Seller: Gameloft (9+)
5 Let's Golf!® 2, v1.0.1, Seller: Gameloft (4+)
6 Frames & FX for Photos, v2.5.1, Seller: Imikimi, LLC (12+)
7 Stenches: A Zombie Tale of Trenches, v1.0.1, Seller: Thunder Game Works (9+)

I do not have a credit card linked to my account, so these were made using my store credit.

I have only 1 computer authorized for my account (my personal home computer). I live alone and no one else touches my Powerbook but me. I also DO NOT own an iPhone, so I would have no interest in apps.

After I saw these bizarre purchases, I checked my account. I noticed 2 strange things: My account information had changed: My street address was correct, but city, state and zip had changed to: Towson, MD 21286-7840. I have never lived in Maryland. Also, I noticed that my password recovery answer had changed to "Murray" in response to a question about my mother's maiden name. That's decidedly NOT my mother's maiden name. Also, my birthdate had changed to an incorrect month and day.

I immediately changed my password and my recovery question/answer challenge.

I reported problems on all of these purchases and also contacted iTunes Account Support by e-mail.

Within 24 hours I received an e-mail from "Vicki" at iTunes Customer Support. She wrote:

"When reviewing over your account "name@domain.net" and the two reported orders, it shows that the content purchased within them was acquired from the computer that is currently authorized for your iTunes account. So I strongly advise that you do consult with those in your household regarding the purchases made, and the charges that resulted from those purchases."

Further:

"I have gone and reversed the charges for the two orders....You will see a store credit in three to five business days....Please note that this is a one-time exception, as the iTunes Store Terms and Conditions state that all sales are final."

I am pleased that Apple is refunding my store credit and replied so quickly.

However, it is simply impossible that these purchases were made from my computer. Again, my Powerbook is the only computer I have ever authorized to access my account, and I am the only person with access to it.

I am not sure how this happened. Any thoughts or similar experiences?

Powerbook G4, Mac OS X (10.5.8)

Posted on Nov 28, 2010 3:43 PM

Reply
1,958 replies

Mar 1, 2011 7:14 AM in response to mjcowley

well, i have to say, this simple email from apple to all its itunes store account holders would obviously be the winning ticket.(after all, this is what apple is saying to do, right?)

"to all itunes store account holders, please change your password immediately"

now come on, is that too fricken obvious? almost laughable!
they must not care about the money they refund, some one else must be paying for all those refunds..you'de think that entity would tell apple to send the email..
😉

Mar 1, 2011 8:46 AM in response to brad p

They can't even pop into this thread and say anything. It's doubtful they will send a message to their users to change their passwords. Not that it would even help. I don't think these hacks really have anything to do with passwords. I think these are direct hacks. And if it is because of passwords that were farmed from an app, how is changing it going to help. The app is just going to get the new password anyway. Again, it sure would be nice to see a response from Apple other than "change your password" or "be careful with your security" etc.

Mar 1, 2011 8:54 AM in response to stereocourier

I am curious - how did each of you input the gift card code? Has anyone who has been affected by this hack entered their gift card code via their computer and NOT via a mobile device?

I input mine via my iPhone in iTunes, and I'm wondering if it is specific to people who enter the code into iTunes via a mobile device (iPod, iPad, iPhone) as opposed to via their computer.

Message was edited by: BradGTX77

Mar 1, 2011 2:54 PM in response to Beast70

I emailed Apple about the issue on Saturday. They replied on Monday and asked for some confirmation information, which I immediately replied to. My account was credited today (Tuesday).

Apple didn't give me a hard time about it, so they must know that there is a problem of some kind. I hope everyone else is as fortunate with their resolution as I have been.

Good luck!

Mar 2, 2011 7:10 AM in response to Beast70

Add me to the list, it is something on apple's end I am sure of it. I access only through a single computer at home hardwired in. No mobile access at all I had a 9 digit completely randomized pw with a mix of numbers and letters with special characters as well. It is unique to my itunes account, and I change it anually. My computer is up to date on patches and has full virus, malware, and firewall protection all kept up to date also. I run daily scans for virus, and malware. I use itunes around 1/month at most, that being said my account was hacked and the credits used up to purchase the following
180,000+ 3D Animations & TextArt Emoji, v2.0, Seller: Jingyu Zhao (4+)
Write a Review Report a Problem $0.99
2 3D Icons & TextArt Emoji, v1.6, Seller: Jingyu Zhao (4+)
Write a Review Report a Problem $0.99
3 HD Wallpaper Pro, v1.3, Seller: Jingyu Zhao (4+)
Write a Review Report a Problem $0.99
4 Text Pictures for Creative Texting Message Anywhere, v1.4, Seller: Jingyu Zhao (4+)
Write a Review Report a Problem $0.99
5 TextArt Pro-Creative SMS/EMAIL/IM Text Pictures for iPhone Texting Anywhere, v1.2, Seller: Qineng He (4+)
Write a Review Report a Problem $0.99
6 MSN Live Messenger with PUSH, v1.2.7, Seller: Beijing 9thQ Digital Technology Co,.Ltd (4+)
Write a Review Report a Problem $0.99
7 10000+ 3D&emoji Animations Pro, v1.7, Seller: James Huang (4+)
Write a Review Report a Problem $0.99
8 Mail Plus, v1.0, Seller: James Huang (4+)
Write a Review Report a Problem $0.99
9 ALL-IN-1 CHEATBOX, v1.1, Seller: James Huang (4+)
Write a Review Report a Problem $0.99
10 MSN Live Messenger Pro, v1.0, Seller: HandCN Mobisoft (4+)
Write a Review Report a Problem $0.99
11 HD Wallpaper for iPhone 4, v1.1, Seller: HandCN Mobisoft (4+)
Write a Review Report a Problem $0.99
12 Animations plus-essential animations and emojis for iPhone, v1.0, Seller: HandCN Mobisoft (4+)
Write a Review Report a Problem $0.99
13 Halo Reach UNLOCKS, v1.0, Seller: HandCN Mobisoft (4+)
Write a Review Report a Problem $0.99
14 StarCraft II Game Guide, v1.1, Seller: James Huang (4+)
Write a Review Report a Problem $1.9

I was floored mac does not have 24 hour support and have filed a problem report also

Mar 3, 2011 8:09 PM in response to stereocourier

I was just ripped off in the App store also from a company that is called GAMEISLIVE and some chinese symbols.

I emailed Apple since the number I tried to call says Apple is closed.

This is ridiculous. I was lucky it was a itunes card credit, but I have to get my credit card info off my account asap. I dont trust Apples security anymore.

Mar 3, 2011 9:04 PM in response to Scottnj

Sorry to hear that Scott.

I would advise you to call AppleCare (1-800-275-2273). Tell them what has gone down and that you need a warm live body to assist you on this issue.

So far, I am checking my itunes account daily for discrepencies. I was able to supply the apple tech the information they were seeking and they reset my itunes/ apple ID so that I could once again download tracks, and download apps from the mac app and the iphone app store. But, no follow up word to say.. *hey we fixed it, all is well, you have been a loyal customer, blah blah blah, and in appreciation, blah blah blah". I sure hope that Apple is appreciative of my business over the years since Ive purchased a significant amount of hardware from them and not merely just my 1st mac plus in 1988.

Mar 4, 2011 9:06 AM in response to stereocourier

Add another one to the list of hacked iTunes accounts.

I got an email receipt this morning for the following purchases that I did NOT make:

1 德州撲克, 240,000 chips, Seller: Hongbin Suo
Report a Problem $9.99
2 德州撲克, 100,000 chips, Seller: Hongbin Suo
Report a Problem

While I did load up a couple gift cards, that was over 2 weeks ago and was done through the iTunes store on my mac (not the iphone or ipad). I suspect there is some security breach on a few apps my wife downloaded onto her iPhone using my itunes account.

Mar 5, 2011 5:07 AM in response to mikejonesdesigns

Add me to list of hacked accounts.

Got an email this morning detailing two purchases from 4/3/11

1 初恋爱(三)Learning Chinese Audio Novels 19, v1.0, Developer: lane ma (4+)
Write a Review Report a Problem £2.99
2 初恋爱(二)Learning Chinese Audio Novels 18, v1.0, Developer: lane ma (4+)
Write a Review Report a Problem £2.99

I emailed then via support link but only had automated response so far (UK)

There is no payment info on my account can't remember if there was before. I assume that there would have been as I have purchased directly before, this only the second time I have used a gift card.

So my big question is, is my bank account at risk now?

I changed my id and password.

Mar 5, 2011 6:41 AM in response to elsieraven

Add me to the list.

I couldn't login to my account last night and finally got around to logging in this morning only to find all of my account details modified, password changed, and unauthorized purchases on my account.

I had a $15 credit on my account from gift cards as well. I have heard around the internet that there some sort of vulnerability in iTunes gift cards.

High Noon, 30 Wampum, Seller: Exoweb Ltd. $4.99
High Noon, 75 Wampum, Seller: Exoweb Ltd. $9.99
Thief Lupin!, v1.0.2, Seller: doosun hong Free
Ow My Balls!, v2.0.1, Seller: Jetson Creative LLC Free
Laser Lights, v1.2, Seller: Pavel Doichev Free
Donut Maker, v1.01, Seller: Suntorm Interactive Free
Angry Birds Seasons Free, v1.2.0, Seller: Rovio Free
The Godfather Empire, v2.1, Seller: Highway Free
Coin Dozer, v6.0, Seller: Game Circus LLC Free
Crazy UFO, v1.1.1, Seller: Avallon Alliance Ltd. Free

I sent an email to iTunes support for feedback this morning and I am still waiting for a response. The thing that really upsets me is I would expect any attempt to reset my password should generate an email, but the only email I received was when I reset my password after my account was hacked. Either a smart hacker or a dumb Apple. Regardless, I have lost faith in Apple's account security and I will not be attaching a credit card to my account again.

Mar 5, 2011 7:13 AM in response to SeanFL

when i was hacked, i had no CC on my account.
i couldnt rem. if i had one listed or not..
i recently tried to open a new itunes account, but could not
without entering a cc.
so i would say, if the account requirments have stayed the same,
we all had a CC on file originally.

right? no one has opened a new account without a cc on file?

Mar 5, 2011 7:37 AM in response to brad p

Gift card was hacked. Changed PW per Apple's suggestion and they have refunded the purchase. However they disabled my account for purchases which happens to include updates when I reported the incident, 3/3/11, and said

'If you would like your iTunes Store account to be enabled, please reply to this email with the following information:

1) The billing address listed on the account, and

2) One of the following:

- the order number of your most recent purchase
- the name of any item you've purchased using this account

I will use the information you provide to investigate the possibility of enabling your account. Please note this investigation could take several days.'

I did as requested and still waiting for account to be reactivated

Mar 5, 2011 8:12 AM in response to WD0FCU

This is the same email that I received from Apple in the course of my Apple ID being disabled. Apple took 3 days to reactivate my apple ID so that I could download free apps for my iphone and for my macbook. Once my Apple ID was reset and I was allowed to download what I wanted whether for my iphone4 or for my lap or desktop, I then removed payment informtion. My strategy now is to only put payment information (paypay/ CC information) immediately before making a purchase, and once the purchase is complete, then I go into an remove payment information.

I think its clear now that there is a system vulnerability with the itunes gift cards lies squarely with Apple. Also, that there appears to be some stealth apps that will activate an "in app" purchase and while this appears to be limited to gambling type of Apps, i wouldn't be surprise that any app that involves a subscription form of payment, also runs the risk of triggering additional debiting of your account.

In my instance, I had my Bank CC information on file with the Apple itunes store. When I was traveling overseas, I did receive an email from the apple itunes store on the unauthorized transactions. At that point, I tried to contact Apple via email to report a problem. While those transactions at the time did not go thru, I can only surmise that who ever hacked in my itunes account could not invoke a payment based upon my CC information as my CC information had been partially altered. My name remained the same on the CC information, but all other information had been changed such as Bank CC (changed to MasterCard from the other vendor, CC number, probably the 3 digit security code, State and Zip code was changed from Alaska to Tennessee with a corresponding zipcode). As far as I can see, it appears that these transactions (2ea 50 dollar itunes gift cards and an itunes music track) failed, but remained as a part of my accounts history when my Apple itunes account was reinstated.

I won't be purchasing an itunes gift card ONLINE for myself or for others.

iTunes store account hacked

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.