You can make a difference in the Apple Support Community!

When you sign up with your Apple Account, you can provide valuable feedback to other community members by upvoting helpful replies and User Tips.

📰 Newsroom Update

Billie Eilish is Apple Music’s Artist of the Year for 2024. Learn more >

Looks like no one’s replied in a while. To start the conversation again, simply ask a new question.

iTunes store account hacked

I'm posting this just to share my story and get reactions. It's a little detailed but I thought worth sharing.

On November 23, 2010 I purchased a single song from the iTunes store for .99. I used store credit that I had from a gift card I received last year. It was the first purchase I had made since July 2010.

On November 25, 2010 I received a receipt for 2 more separate orders to my account. These were for over $50 in iPhones apps. Here's a sampling of some of the purchases:

1 eREAD isoshu, v1.5, Seller: ChengDu YueTong Internet Information Co. Ltd (17+)
2 Plants vs. Zombies, v1.3, Seller: PopCap Games, Inc. (iDP)
3 Monkey Island 2 Special Edition: LeChuck's Revenge, v1.1, Seller: Lucasfilm International Services Inc.
4 Asphalt 5, v1.2.6, Seller: Gameloft (9+)
5 Let's Golf!® 2, v1.0.1, Seller: Gameloft (4+)
6 Frames & FX for Photos, v2.5.1, Seller: Imikimi, LLC (12+)
7 Stenches: A Zombie Tale of Trenches, v1.0.1, Seller: Thunder Game Works (9+)

I do not have a credit card linked to my account, so these were made using my store credit.

I have only 1 computer authorized for my account (my personal home computer). I live alone and no one else touches my Powerbook but me. I also DO NOT own an iPhone, so I would have no interest in apps.

After I saw these bizarre purchases, I checked my account. I noticed 2 strange things: My account information had changed: My street address was correct, but city, state and zip had changed to: Towson, MD 21286-7840. I have never lived in Maryland. Also, I noticed that my password recovery answer had changed to "Murray" in response to a question about my mother's maiden name. That's decidedly NOT my mother's maiden name. Also, my birthdate had changed to an incorrect month and day.

I immediately changed my password and my recovery question/answer challenge.

I reported problems on all of these purchases and also contacted iTunes Account Support by e-mail.

Within 24 hours I received an e-mail from "Vicki" at iTunes Customer Support. She wrote:

"When reviewing over your account "name@domain.net" and the two reported orders, it shows that the content purchased within them was acquired from the computer that is currently authorized for your iTunes account. So I strongly advise that you do consult with those in your household regarding the purchases made, and the charges that resulted from those purchases."

Further:

"I have gone and reversed the charges for the two orders....You will see a store credit in three to five business days....Please note that this is a one-time exception, as the iTunes Store Terms and Conditions state that all sales are final."

I am pleased that Apple is refunding my store credit and replied so quickly.

However, it is simply impossible that these purchases were made from my computer. Again, my Powerbook is the only computer I have ever authorized to access my account, and I am the only person with access to it.

I am not sure how this happened. Any thoughts or similar experiences?

Powerbook G4, Mac OS X (10.5.8)

Posted on Nov 28, 2010 3:43 PM

Reply
1,958 replies

Mar 6, 2011 12:24 AM in response to stereocourier

I had $12 in credit from gift cards. $10.98 was used on two apps:

1 初恋爱(三)Learning Chinese Audio Novels 19, v1.0, Developer: lane ma
2 Zen Saying, v.1.0, Seller: Reading Garden

Both on 4/3/11. I notice from the last page that another poster had the same first app downloaded on the same day.

I reported it, changed my password and await a non-automated response.

Mar 6, 2011 3:00 AM in response to stereocourier

I'm still waiting for a non-automated reply after reporting it to them first thing yesterday morning. I'm losing all faith in apple. Think I'm going to sell my apple kit and cancel my account with them. I don't need this kind of hastle. The rest of the family are thinking of doing the same. Online security has always worried me so I'm always almost paranoid careful. To get stung like this has put me off buying anything over the Internet. I'm going back to highstreet shopping. At least if you get mugged in the street you know about it instantly.

Mar 8, 2011 11:00 AM in response to stereocourier

I too had my account hacked. It happened yesterday March, 7, 2011.

I wonder if the URL and/or MAC addresses could be used to help stop this type of attack.

Receipt Date: 03/07/11
Order Total: $18.19
Billed To: Store Credit

Item Number Description Unit Price

1 Learning Chinese Audio Novels Serial Five, v1.0, Seller: lane ma (4+)
Write a Review Report a Problem $2.99
2 世界上下五千年(二)Learning Chinese Audio Novels 15, v1.0, Seller: lane ma (4+)
Write a Review Report a Problem $4.99
3 Learning Chinese Audio Novels Serial Seven, v1.0, Seller: lane ma (4+)
Write a Review Report a Problem $2.99
4 Learning Chinese Audio Novels Serial Eight, v1.0, Seller: lane ma (4+)
Write a Review Report a Problem $2.99
5 Learning Chinese Audio Novels Serial Nine, v1.0, Seller: lane ma (4+)
Write a Review Report a Problem

Mar 8, 2011 2:17 PM in response to ashes123

Well done Apple Support - credited my account back within 48 hours. Thank you !

Unfortuinately next day without having logged into the itues store (account locked) I got an email again saying I'd purchased 2 more things from GAMESISLIVE CORPORATION for the exact same amounts as before.

I had even changed my password when I reported the original issue.

I suspect one of the apps has a Trojan or something in it. Looked at what I had bought/downloaded the day before the first issue : Doodle Truck, Fruit Ninja, Game is Live Lite and Doodle Jump. I know the last 2 are Ok as we have them on another ipod and account and no issues there,

Anyone else witht hese problems have Doodle Truck or Fruit Ninja?

Mar 8, 2011 2:47 PM in response to stereocourier

My itunes acct for my iphone was hacked over a week ago, I turned the credit card off and made the mistake to contacting Itunes to let them know it happened. SWAROOP emailed me back 2 days later to let me know it didn't happen but if it did call your credit card company make a charge back. Then they decided to disable my itunes acct and will not enable it till I give them my billing address and last numbers of the card or any purchases I made unfortunately I never made any purchases. I gave them the billing address and last 4 numbers from the defunct card. They said it did not match their records. Now I have an Iphone I cannot update the apps or anything. HELP Anyone !! I am at my wits end! If anyone can help! Sure would be nice if I could have a phone number to call instead of emailing back and forth days at a time.

Mar 9, 2011 1:48 PM in response to Mike Johnson12

I am a PC user and have not had a reply from Apple since I reported the March 5 unauthorized purchases on March 6. I only lost $9 of credit. Since the Windows forum was rather quiet, I came over here where I see that this is quite a large problem.

It happened after I used an iTunes gift card for a purchase. I am afraid that my cc was compromised, but no issue as of yet. Somehow they are accessing iTunes credits, but not payment info. I'm not surprised that Apple isn't exactly advertising the issue, but they had better be more responsive to their users' complaints to prevent loss of credibility and potential class action lawsuits.

If these alleged Chinese hackers are caught by the Chinese, they will likely be dealt with very harshly.

How long does it take Apple to get back to you?

Also, my iTunes account says that these 4 apps are waiting to be downloaded. I'm not going to download them, they are likely malicious.

Mar 11, 2011 3:51 AM in response to Perchance2Dream

Hi, I have just had my account hacked yesterday but luckily only for £1.77 and when i looked at my itunes account the items purchased are:
hands heater + 3in1 winter pack
night vision+
mirror in your pocket.
I did not purchase these items as they seem extremely useless and they are in my purchase history, my address had been changed by duplicating my address line a couple of times. i have emailed apple and i am waiting for a response. i had a cc information in my account which i have used for years and never had any issues. i have contacted my bank and have cancelled my card as there are other items waiting to go through. i have never used gift cards so this isnt an issue for me.

i am hoping they will refund my money as my bank at present will not although it is only for a small amount.

i am amazed on how many people have been affected by this issue.

Mar 11, 2011 8:46 AM in response to Teenie Sando

Can someone from Apple please respond?

My account was also hacked, thankfully just about $15 worth of gift card credit was used as I do not keep a credit card on file (thank God).

Apple's iTunes user agreement demands that we let Apple know as soon as we believe our account information has been compromised. But nowhere did they say WHOM or WHERE to contact someone? Utterly ridiculous. I went to the general customer service email form and filled it out 2 days ago and I have not heard a word.

FYI - here is the receipt I was given. All seem to be Chinese applications (yeah, I know....shocking)

1 MSN Live Messenger with PUSH, v1.2.7, Seller: Beijing 9thQ Digital Technology Co,.Ltd (4+)
Write a Review Report a Problem $0.99
2 10000+ 3D&emoji Animations Pro, v1.7, Seller: James Huang (4+)
Write a Review Report a Problem $0.99
3 ALL-IN-1 CHEATBOX, v1.1, Seller: James Huang (4+)
Write a Review Report a Problem $0.99
4 Mail Plus, v1.0, Seller: James Huang (4+)
Write a Review Report a Problem $0.99
5 MSN Live Messenger Pro, v1.0, Seller: HandCN Mobisoft (4+)
Write a Review Report a Problem $0.99
6 HD Wallpaper for iPhone 4, v1.1, Seller: HandCN Mobisoft (4+)
Write a Review Report a Problem $0.99
7 Animations plus-essential animations and emojis for iPhone, v1.0, Seller: HandCN Mobisoft (4+)
Write a Review Report a Problem $0.99
8 Text Emoji, v1.1, Seller: HandCN Mobisoft (4+)
Write a Review Report a Problem $0.99
9 FABLE III GAME GUIDE, v1.1, Seller: HandCN Mobisoft (4+)
Write a Review Report a Problem $0.99
10 Halo Reach UNLOCKS, v1.0, Seller: HandCN Mobisoft (4+)
Write a Review Report a Problem $0.99




Can someone please tell me if there is a number to call so I can talk to a real human being about this?

Mar 11, 2011 9:23 AM in response to stereocourier

I also had unauthorized purchases made, nearly cleaning out my iTunes GC credit. The purchases were for AIM, Cartel Wars, and 1000 Cartel Wars points. No response from Apple to my email complaint, after >48hrs. It looks like they may have finally refunded my credit, though.
I've changed to a more robust password, but don't know how effective that will be. Should I change my AppleID as well?
Don't have any CC linked to my account, but do have my Paypal account linked.
Hope to hear some resolution to this.
Looks like maybe you should spend your GC credit as soon as possible, to avoid getting it cleaned out...
-DW

Mar 11, 2011 11:22 AM in response to Weedman

I was just hit by Hongbin Suo yesterday. First for the 1,700,000 Chips thing and then for 240,000 more chips. I have no idea what this is but I've sent an email to Apple to try to get it credited back. Thankfully, there is no credit card infromation on my account and these charges were deducted from my gift card balance.

Mar 11, 2011 11:27 AM in response to Teenie Sando

You need to review your bank's statements or if you are able to review them online, to determine if those purchases actually went through on your CC and not someone else's. In my instance, the hacker had altered my CC information to such an extent such that my bank rejected the transactions, but the CC information that the hacker had used, showed that they were downloaded by my apple ID and billed to someone else. So, thats why you see it on your itunes history just as it was with mine. Apple for whatever reason chose NOT to remove these items from my download history from the pending status and when my Bank CC information was reinstated to the account, the history showed that they were no longer pending, but now is a part of my history to that apple ID. I would have preferred that these items be removed and they may yet be done at some future date (within 60/90 days), just my guess. A recheck of my bank CC biling information shows that I have not been charged for these unauthorized transactions.
There is definitely a weakness in the Apple ID structure in which folks are having their accounts hacked and cleaned out as far as itunes gift cards go. Even though Im removing my payment information as a matter of practice, this is no assurance that ones Apple ID will be hacked and someone elses cracked CC information is installed to make purchases.
Compounding this problem is the lack of being able to escalate these events to have a chat with a live person

Mar 11, 2011 4:22 PM in response to Perchance2Dream

Still no response from Apple!

Maybe it's an inside job, with Apple or one of their agents? The thieves get on the credits pretty quick - it's like they know when and who activated a card.

Left a message with FastCard, the gift card manufacturer, as well.

If no response from Apple by Monday, will report to the RCMP. A class action suit is an alternative - imagine the contingency on this one!

The terms of service will not protect Apple if their employees are stealing from people.

Mar 13, 2011 4:59 PM in response to stereocourier

Same thing here. Had a LOT of money taken out of my account yesterday (I normally know better than to store much in my account, but I had a huge Coinstar redemption). Same thing with changing my address to Towson, MD, and the zip code, but they didn't change the phone number. I didn't have a credit card linked to my account, mercifully. But I also don't have a phone or anything other than my home computer that accesses the Apple store -- so the hack has to be getting the information from Apple. Let's see how they resolve it. I'm surprised I even noticed it so quickly, I don't look at the Apple store very often.

iTunes store account hacked

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.