You can make a difference in the Apple Support Community!

When you sign up with your Apple Account, you can provide valuable feedback to other community members by upvoting helpful replies and User Tips.

📰 Newsroom Update

Billie Eilish is Apple Music’s Artist of the Year for 2024. Learn more >

Looks like no one’s replied in a while. To start the conversation again, simply ask a new question.

iTunes store account hacked

I'm posting this just to share my story and get reactions. It's a little detailed but I thought worth sharing.

On November 23, 2010 I purchased a single song from the iTunes store for .99. I used store credit that I had from a gift card I received last year. It was the first purchase I had made since July 2010.

On November 25, 2010 I received a receipt for 2 more separate orders to my account. These were for over $50 in iPhones apps. Here's a sampling of some of the purchases:

1 eREAD isoshu, v1.5, Seller: ChengDu YueTong Internet Information Co. Ltd (17+)
2 Plants vs. Zombies, v1.3, Seller: PopCap Games, Inc. (iDP)
3 Monkey Island 2 Special Edition: LeChuck's Revenge, v1.1, Seller: Lucasfilm International Services Inc.
4 Asphalt 5, v1.2.6, Seller: Gameloft (9+)
5 Let's Golf!® 2, v1.0.1, Seller: Gameloft (4+)
6 Frames & FX for Photos, v2.5.1, Seller: Imikimi, LLC (12+)
7 Stenches: A Zombie Tale of Trenches, v1.0.1, Seller: Thunder Game Works (9+)

I do not have a credit card linked to my account, so these were made using my store credit.

I have only 1 computer authorized for my account (my personal home computer). I live alone and no one else touches my Powerbook but me. I also DO NOT own an iPhone, so I would have no interest in apps.

After I saw these bizarre purchases, I checked my account. I noticed 2 strange things: My account information had changed: My street address was correct, but city, state and zip had changed to: Towson, MD 21286-7840. I have never lived in Maryland. Also, I noticed that my password recovery answer had changed to "Murray" in response to a question about my mother's maiden name. That's decidedly NOT my mother's maiden name. Also, my birthdate had changed to an incorrect month and day.

I immediately changed my password and my recovery question/answer challenge.

I reported problems on all of these purchases and also contacted iTunes Account Support by e-mail.

Within 24 hours I received an e-mail from "Vicki" at iTunes Customer Support. She wrote:

"When reviewing over your account "name@domain.net" and the two reported orders, it shows that the content purchased within them was acquired from the computer that is currently authorized for your iTunes account. So I strongly advise that you do consult with those in your household regarding the purchases made, and the charges that resulted from those purchases."

Further:

"I have gone and reversed the charges for the two orders....You will see a store credit in three to five business days....Please note that this is a one-time exception, as the iTunes Store Terms and Conditions state that all sales are final."

I am pleased that Apple is refunding my store credit and replied so quickly.

However, it is simply impossible that these purchases were made from my computer. Again, my Powerbook is the only computer I have ever authorized to access my account, and I am the only person with access to it.

I am not sure how this happened. Any thoughts or similar experiences?

Powerbook G4, Mac OS X (10.5.8)

Posted on Nov 28, 2010 3:43 PM

Reply
1,958 replies

Apr 15, 2011 12:07 AM in response to ybenner

That's kind of what I was trying to get at...I don't know how this hacker works..is he/she able to use our accounts to dl without actually being on our accounts? or does he/she have to actually be signed into our accounts? If it's the first, okay, I get why they would ask for that info. But if it's the second...like I said, that information is right there in the account info and purchase history, so it didn't seem too wild to think a hacker would jot down that info and use it to claim my account as their own.

Anyway, I did receive an email about my account being enabled again. It was faster than I expected after reading through a few posts. >_< In this case, I think bad luck was on my side because the two computers authorized for my account haven't been working and this one didn't have itunes on it until yesterday, a few hours after the purchases were made.

Apr 19, 2011 8:00 AM in response to stereocourier

April 19 and the same thing happened to me. 20.97 from a gift card, cc info cleared, city and state changed to Towson, MD. This is 5 months from the first post and it is still going on. The seller's name the purchases were made from is Hongbin Suo. It happened right after I downloaded Angry Birds Rio HD, the free app. Don't know if there's a connection but that was the first time I used the account in several months, then ZAP. Coincident? I have deleted the app, changed passwords, etc.


I called Apple Care and the rep was extremely helpful with good info. And he spoke English!

Apr 19, 2011 11:04 AM in response to CoopMac

For the record, I had the exact same thing happen. I submitted a email to Apple, while the Techs (Kelly Ann & Julian) were very professional and for the most part helpful (I was reimbursed (while being advised this is a ONE
TIME DEAL!), it took exactly a week before I had my account re-enabled. I was assured that the only way for this to happen is that I allowed someone else access to my account. I DO NOT do that, to even my wife, she and both my kids have their own accounts (no issues there!). It does seem the common denominator is the gift card thing, they used $49.99 of my gifted balance (I had about $3 left after the purchase of the chips). I noticed the purchase the next day (with the email notification of the purcahse). I have almost 200 apps I have purchased for my iPhone, Ipod Touch and iPad (iPad2 enroute). I provide this for documenation of the problem. Hope Apple finds the leak and plugs it soon!!

Has anyone had subsequent problems after resolution through Apple?

R/Doc

Apr 19, 2011 3:01 PM in response to stereocourier

The rep I talked to was very helpful and suggested something worth telling everyone. There has been a second computer authorized on my account, which of course I didn't do. He said I can't deauthorize and account until there are five computers on the account. I'm going to add another laptop, and two computers at work. With a total of five authorized on the account, I can then deauthorize the ones I want to, including the one (in China) or where ever the hacker is from. Good tip!

Apr 20, 2011 6:40 AM in response to stereocourier

Here's what I've experienced ... 14 transactions on my credit card over the last two days totaling $164.32 so far. Still have a credit balance from a gift card so that hasn't been touched ... no receipts or history of any recent downloads in my transaction history ... still only one computer authorized. Have subsequently deleted my CC info from my iTunes account, changed the PW, contacted the bank to dispute the charges, contacted iTunes (no response in 48 hours).


Does this indicate someone has put my CC info on someone else's iTunes account? Any advice on what I should do next?


Thanks!

Apr 20, 2011 7:25 AM in response to stereocourier

I was told by the Apple rep that nobody can see the cc info, just the standard last four digits. The info is supposed to be encrypted. I believe that. The problem seems to be credit cards and gift cards being used to purchase apps and in-app chips for gambling. Of course, the money is being paid by Apple to the developers or hijackers of the developer's account. I'm not going to replace my cc, but I'll keep a very close eye on the account.

Apr 22, 2011 12:36 PM in response to stereocourier

Count me as the next victim of gift card theft. Had about $20 dollars stolen for a game called "empire online" and had my cc info wiped from my account as well a couple days ago. I am currently talking with apple about this and have reset my password. This is troubling that this is so widespread. I thought I was alone, till I found, is thread. Doubt I will ever trust iTunes ev again, unless they get this straightened out.

Apr 22, 2011 6:25 PM in response to stereocourier

Yep, just got hacked. Received a gift card and put it on the account. Sign in today and all $50 dollars from the gift card is spent as well as $11 dollars from my credit card. Same thing as other posters, cc information removed and address changed to Towson, Maryland. Can anyone post the support emails and phone numbers you guys are contacting? There does not seem to be any itunes support information anywhere. Thanks.

Apr 22, 2011 7:44 PM in response to bluemc

This happened to me overnight as well - woke up this morning and noticed that my gift card credit was down to $2. Checked my purchase history - $60 has been spent on in-app purchases for Texas Poker, an app that I've never downloaded. I've logged it with support and reset my password. Will wait to see what happens.


It didn't seem as though anything else on my account had changed and no charges have been made to my credit card.

Apr 22, 2011 11:57 PM in response to stereocourier

Same story for me. I have had $50 dollars of gift card money stolen from my account. Emailed support, this is outrageous. If this does not get fixed soon I will never, ever purchase anything from Apple or use any software again, and advise all the people I know to do the same, because they are clearly NOT a secure company to do business with and from what it sounds like here, don't care much for customer service. Absolutely ridiculous.

Apr 22, 2011 11:58 PM in response to stereocourier

That's good then. Some people have an extra authorized computer on there, like me. They took both off, and I have to add mine back on. It would be nice if the iTunes store would send an immediate receipt for purchases. They don't send it for a few days so you can't stop things like this while it's going on. They made two purchases for free apps on my account, then the next day made the charges to my gift card. Could have stopped that one fast if I had received a quick email about the freebies.

Apr 26, 2011 9:19 AM in response to stereocourier

I too was hacked:


KingdomConquest-, KC 3800CP, Seller: SEGA CORPORATION $25.99


plus two more for the same app. It says I installed the free app then had three in-app purchases (and I have turned-off in-app purchases too).


Waiting to hear back for Apple.


I am wondering if it is an App that we have all downloaded. The last couple free ones I downloaded were :iPirates

and

One Single Life


Anyone else notice these apps? Or what free ones did you download right before you were hacked?

iTunes store account hacked

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.