You can make a difference in the Apple Support Community!

When you sign up with your Apple Account, you can provide valuable feedback to other community members by upvoting helpful replies and User Tips.

📰 Newsroom Update

Billie Eilish is Apple Music’s Artist of the Year for 2024. Learn more >

Looks like no one’s replied in a while. To start the conversation again, simply ask a new question.

iTunes store account hacked

I'm posting this just to share my story and get reactions. It's a little detailed but I thought worth sharing.

On November 23, 2010 I purchased a single song from the iTunes store for .99. I used store credit that I had from a gift card I received last year. It was the first purchase I had made since July 2010.

On November 25, 2010 I received a receipt for 2 more separate orders to my account. These were for over $50 in iPhones apps. Here's a sampling of some of the purchases:

1 eREAD isoshu, v1.5, Seller: ChengDu YueTong Internet Information Co. Ltd (17+)
2 Plants vs. Zombies, v1.3, Seller: PopCap Games, Inc. (iDP)
3 Monkey Island 2 Special Edition: LeChuck's Revenge, v1.1, Seller: Lucasfilm International Services Inc.
4 Asphalt 5, v1.2.6, Seller: Gameloft (9+)
5 Let's Golf!® 2, v1.0.1, Seller: Gameloft (4+)
6 Frames & FX for Photos, v2.5.1, Seller: Imikimi, LLC (12+)
7 Stenches: A Zombie Tale of Trenches, v1.0.1, Seller: Thunder Game Works (9+)

I do not have a credit card linked to my account, so these were made using my store credit.

I have only 1 computer authorized for my account (my personal home computer). I live alone and no one else touches my Powerbook but me. I also DO NOT own an iPhone, so I would have no interest in apps.

After I saw these bizarre purchases, I checked my account. I noticed 2 strange things: My account information had changed: My street address was correct, but city, state and zip had changed to: Towson, MD 21286-7840. I have never lived in Maryland. Also, I noticed that my password recovery answer had changed to "Murray" in response to a question about my mother's maiden name. That's decidedly NOT my mother's maiden name. Also, my birthdate had changed to an incorrect month and day.

I immediately changed my password and my recovery question/answer challenge.

I reported problems on all of these purchases and also contacted iTunes Account Support by e-mail.

Within 24 hours I received an e-mail from "Vicki" at iTunes Customer Support. She wrote:

"When reviewing over your account "name@domain.net" and the two reported orders, it shows that the content purchased within them was acquired from the computer that is currently authorized for your iTunes account. So I strongly advise that you do consult with those in your household regarding the purchases made, and the charges that resulted from those purchases."

Further:

"I have gone and reversed the charges for the two orders....You will see a store credit in three to five business days....Please note that this is a one-time exception, as the iTunes Store Terms and Conditions state that all sales are final."

I am pleased that Apple is refunding my store credit and replied so quickly.

However, it is simply impossible that these purchases were made from my computer. Again, my Powerbook is the only computer I have ever authorized to access my account, and I am the only person with access to it.

I am not sure how this happened. Any thoughts or similar experiences?

Powerbook G4, Mac OS X (10.5.8)

Posted on Nov 28, 2010 3:43 PM

Reply
1,958 replies

Jun 8, 2011 4:48 PM in response to stereocourier

Posted this in other forum but basically same thing has happened to me.


I received an itunes receipt for £10.98 for points for 'SEGA Kingdom Quest', I have never heard of this app let alone downloaded it. Luckily that was all the balance on my gift card but still shouldn't have happened and Apple better credit it back. I still don't understand how this can be happening to so many people, I only ever use that password for my itunes account and am extremely careful regarding phishing attempts and spyware.


Apple had better get on top of this soon or their reputation will be in tatters for protecting customers data. This is now happening to so many people who have never downloaded any of these apps.


This has totally shaken my trust in using itunes, I thought better of Apple.

Jun 8, 2011 4:52 PM in response to cordy39

I no longer trust iTunes either...which is unfortunate because I've supported their software since I bought an eMac years ago. I noticed a security update and an iTunes update today on my Mac, hopefully this fixes any security holes that may have been existing...


I still won't be buying any music through Apple anymore though, and this story has led to many of my friends on Facebook removing credit information from their accounts as well. You made a noob move Apple, and you aren't even trying to help us...

Jun 9, 2011 8:42 AM in response to stereocourier

Same thing happened to me on the 6th of June. Same app.. Kingdom Conquest. 3 seperate transactions.

$8.99, 65.96, and 28.95.

i filed a dispute with paypal and contacted apple right away.

i'm mad/sad because all of that money was just recently subtracted from my banking account, since i have it as backup on paypal. :|


i contacted paypal and they cancelled all paypal authorizations and they said the chargeback will happen by atleast next week. they mentioned that it will take awhile through the bank because they have to go through federal reserve and such.


hope i get the refund soon..or i will have to survive a week with just 20 dollars. college student living in a dorm over here.

Jun 10, 2011 11:09 AM in response to stereocourier

Just happened to me today! Two charges, first one was for $59.97, second one was for $44.97 I quickly disabled PayPal on my iTunes account before another one for $19.96 could get through! For me, it was someone using my account to buy, "Nobility Points" in a game called KINGDOMS AT WAR. I had never even heard of this game before today! Man, this *****. How are they able to get my information? I'm worried about downloading anything else from iTunes now.

Jun 10, 2011 2:56 PM in response to stereocourier

Got me too! Kingdom Conquest, and in-app charges. Spent about 10 minutes waiting for a tech on the phone. Acted like they'd not heard there was an issue. The tech on the phone was simply relaying information from some other tech with whom she was chatting online. Finally said they would refund the charges, and that I should change my password and everything would be OK. Thanks, and bye. So I did that, and then find that my Apple ID was deactivated, so after scouring their online resources, ended up on another 30 minute phone call with one tech intermediary getting info from another tech via chat, and again the tech claimed he was unaware of any issues with a global hack, even when I referenced Kingdom Conquest. "Really? Where did you hear that?" Uhhh, GOOGLE!!

So I got the ID reactivated, changed the password, and I'm back in business. BUT, neither tech bothered to mention deleting credit card, Pay Pal info, and prepaid card info from my iTunes account. COME ON APPLE, put your big boy pants on and (1) acknowledge the problem, and (2) WARN YOUR CUSTOMERS! I at least got the courtesy of an email from Michaels when they had skimming issues!

Jun 10, 2011 4:32 PM in response to stereocourier

I was hacked in April (same situation as everyone else...gift card credit, location changed to Towson, etc.). I got a refund and my account was disabled. Of course, I changed my password, security questions, etc. immediately. Two days ago, I finally decided to reactivate my account, and I purchased two songs. I checked my email today, and the receipt shows $39.98 in purchases that I did not make. This time it's "MetalStorm: Online" and in-app coins.


The first time this happened, I was a bit frustrated; now, I'm ******. I know I'm preaching to the choir here, but this is ridiculous. How is it that literally within hours of reactivating my account, it gets drained? Why has this been going on for at least six months with (as far as I can tell) no acknowledgement from Apple and certainly no solution? This thread has almost 50,000 views. Either this is one sophisticated exploit, or Apple is pretty **** incompetent.

Jun 10, 2011 11:16 PM in response to jrmeister

May 4, $49.97 for Texas Poker. I just noticed it now. I had $50 in gift cards I had redeemed (from my computer) around that time. I just contacted Apple to let them know. It appears that nothing was charged on my credit card (which has apparently been deleted from my account), and I feel fortunate that my account wasn't linked to Paypal.


As an original apple fanboy, I am very disappointed by this situation and Apple's lack of an obvious response to those of us who have been victimized.


Someone also changed my city of residence to Cockeysville, MD.

Jun 10, 2011 11:53 PM in response to stereocourier

i just got hacked yesterday,theres 4 consecutive buy in between 1 hour, lucky im still in front of my computer and i immediately unlink my account with paypal and change all my password
1.Haypi kingdom, super package, Seller: Haypi Co., Ltd. cost $54.43
2.Haypi kingdom, medium package 2, Seller: Haypi Co., Ltd. ,Haypi kingdom, medium package, Seller: Haypi Co., Ltd. Haypi kingdom, basic package, Seller: Haypi Co., Ltd. Cheats for Haypi Kingdom, v1.0, Seller: Rashmi Bajaj (4+) ,and 1 song named Sao Anh No Danh Quen cost $40.14
3.music that i never ever heard it like red hot chilli pepper and some vietnamese song ( dang i never like american and vietnamese song) cost me about $49.33
4.another 4 more song cost $10.57
with this im will never ever buy any apps in itunes store.

Jun 11, 2011 11:03 AM in response to stereocourier

Me TOOO!! I just got one yesterday for purchase of these games and poker chips I didn't make.


-KingdomConquest-, v1.1.8, Seller: Dega Corporation -Free

Texas Poker, v3.0, Seller: KAMAGAMES LTD -Free

Texas Poker, 15M chips, Seller: KAMAGAMES LTD -$19.99

Texas Poker, 15M chips, Seller: KAMAGAMES LTD -$19.99

Texas Poker, 5M chips, Seller: KAMAGAMES LTD -$9.99


Total of $49.97


Glad I only had a gift card in my account, but still, this is ********.

Jun 11, 2011 12:24 PM in response to stereocourier

I heard back from Apple (it took only about 6 hours for them to contact me). In addition to telling me to change my password and telling me how to reactivate my account, they said,


"After reviewing the circumstances of your case, we determined that issuing you a refund for the items that were purchased without your permission is an appropriate exception to the iTunes Store Terms and Conditions, which state that all sales are final. A refund in the amount of $49.97 will be credited to your iTunes account." (the account has not yet been credited)


The quick reply suggests that they are very aware of the situation, but the posts above show that the problem is ongoing. I'm surprised that they haven't completely locked or blocked the several applications that seem to be the worst offenders (or even block the ability for in-app purchases).

Jun 11, 2011 3:16 PM in response to stereocourier

Well, I just heard back from Apple. No refund for me, since I'm a two-time victim. Basically all the questions I asked were ignored, but I was told to change my password and review the terms of sale and security tips. Not sure if this was intended to be an insult, but it is.


My account is disabled once again, and I intend to leave it that way.


Bye, Apple.

Jun 13, 2011 4:49 AM in response to freddiegrover

Got hit over night -- nearly $240 dollars in PayPal purchases for an app called "Live Racing". Contested the Paypal charges, filed a report with Apple -- we'll see what happens, super anxious about it though.


They didn't bother changing anything about the account -- I did reset the password, all warnings, and deauthorized all the computers associated with the account. Annoying thing to wake up to on Monday morning.


I think this was a brute force hack, though. All week my iTunes account kept getting locked, but no suspicious activity otherwise. I was doing a lot of updates to my devices and computers in my house, setting up the beta of iTunes in the Cloud, etc.. and had naturally assumed it was just a quirk with the new system.


Looking back, I should have changed my password much earlier.

iTunes store account hacked

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.