You can make a difference in the Apple Support Community!

When you sign up with your Apple Account, you can provide valuable feedback to other community members by upvoting helpful replies and User Tips.

Looks like no one’s replied in a while. To start the conversation again, simply ask a new question.

iTunes store account hacked

I'm posting this just to share my story and get reactions. It's a little detailed but I thought worth sharing.

On November 23, 2010 I purchased a single song from the iTunes store for .99. I used store credit that I had from a gift card I received last year. It was the first purchase I had made since July 2010.

On November 25, 2010 I received a receipt for 2 more separate orders to my account. These were for over $50 in iPhones apps. Here's a sampling of some of the purchases:

1 eREAD isoshu, v1.5, Seller: ChengDu YueTong Internet Information Co. Ltd (17+)
2 Plants vs. Zombies, v1.3, Seller: PopCap Games, Inc. (iDP)
3 Monkey Island 2 Special Edition: LeChuck's Revenge, v1.1, Seller: Lucasfilm International Services Inc.
4 Asphalt 5, v1.2.6, Seller: Gameloft (9+)
5 Let's Golf!® 2, v1.0.1, Seller: Gameloft (4+)
6 Frames & FX for Photos, v2.5.1, Seller: Imikimi, LLC (12+)
7 Stenches: A Zombie Tale of Trenches, v1.0.1, Seller: Thunder Game Works (9+)

I do not have a credit card linked to my account, so these were made using my store credit.

I have only 1 computer authorized for my account (my personal home computer). I live alone and no one else touches my Powerbook but me. I also DO NOT own an iPhone, so I would have no interest in apps.

After I saw these bizarre purchases, I checked my account. I noticed 2 strange things: My account information had changed: My street address was correct, but city, state and zip had changed to: Towson, MD 21286-7840. I have never lived in Maryland. Also, I noticed that my password recovery answer had changed to "Murray" in response to a question about my mother's maiden name. That's decidedly NOT my mother's maiden name. Also, my birthdate had changed to an incorrect month and day.

I immediately changed my password and my recovery question/answer challenge.

I reported problems on all of these purchases and also contacted iTunes Account Support by e-mail.

Within 24 hours I received an e-mail from "Vicki" at iTunes Customer Support. She wrote:

"When reviewing over your account "name@domain.net" and the two reported orders, it shows that the content purchased within them was acquired from the computer that is currently authorized for your iTunes account. So I strongly advise that you do consult with those in your household regarding the purchases made, and the charges that resulted from those purchases."

Further:

"I have gone and reversed the charges for the two orders....You will see a store credit in three to five business days....Please note that this is a one-time exception, as the iTunes Store Terms and Conditions state that all sales are final."

I am pleased that Apple is refunding my store credit and replied so quickly.

However, it is simply impossible that these purchases were made from my computer. Again, my Powerbook is the only computer I have ever authorized to access my account, and I am the only person with access to it.

I am not sure how this happened. Any thoughts or similar experiences?

Powerbook G4, Mac OS X (10.5.8)

Posted on Nov 28, 2010 3:43 PM

Reply
1,958 replies

Jun 27, 2011 7:29 AM in response to stereocourier

you can add another to the list. On friday I bought a gift card and added it to my account and last night I get an email saying that a purchase had just been made from iTunes but not from my authorized computer or any devise I had ever used before. Then I got a email saying that my paypal payment method had been stopped.


So I went and changed all my security information. And seen that my payment info had been deleted and my credit I had just added to my account on friday was all gone except for $2.00


I sent an email to iTunes support but what I got back was them telling me that they were sorry my download didn't work and i should try it again!! So I have now sent off another email trying to make them relize I didn't purchase it.

Jun 27, 2011 12:05 PM in response to mom2bret

I had my account hacked by in-app purchases from GAMESISLIVE CORPORATION - Lakoo for:

34.25, 42.26, 49.97, 59.97 & 59.97....I had paypal linked to my account. It has been removed now. New passwords all the way around! I have contacted paypal disputed and apple. We will see what happens. I have not found where they downloaded the original app on my account if they ever did. This started on 6/22 then on 6/24 the last purchase was today after I noticed everything.

Jun 28, 2011 11:19 AM in response to stereocourier

UPDATE: I received an Email from Apple about 36 hrs later(reported 25th). Basically saying that they would refund my purchases despite the "all sales are final" clause. They have reactivated my Itunes Account but I think someone has been trying again to break my password. PAYPAL has not fixed it it on their end yet nor have they tried to take it from my Checking Account. I mentioned in my response to Apple that they have a problem and need to address it. Their response in Re-Activating my Itunes did not mention any Security concerns I raised with them.


I will not be keeping any payment info with them.


I was hit with 3 purchases around $114. There would have been more if I hadn't been close to my phone to see the purchases.

Jun 28, 2011 12:59 PM in response to stereocourier

This happend to me at the end of May (KAMAGAMES Texas Poker). Account got hacked, stole the rest of my gift card. Worked with Apple, got reimbursed, changed my password, security question, removed my CC info...


HOWEVER: I can no longer update any of my apps, which were legitimately purchased by me, and have been working for weeks to get an answer as to why from my customer support person, Jessie. We now have this ridiculous email relationship where she is ever so sorry for my frustration and ignores my basic question of why I can't update my apps--and how can that be fixed. I'm sure it can't be at this point, right? Otherwise she would have explained it.


Can any of you still update your apps after your hacking? If so, how did it work? Just like normal--before you got hacked?


It's completely angrifying that Apple is ignoring this major breach. I am beyond ******. I wish I had another option besides iTunes.... Sigh.

Jun 28, 2011 7:06 PM in response to stereocourier

I just realized today that my account was hacked similar to the others (purchases on 6/27, 6/28, and 6/29 [tomorrow?]), all being paid through my PayPal. Good thing PayPal noticed the odd transactions and halted payment. They each were for about $40+, probably trying to keep below a $50 gift card style limit. There are also currently $36 in queue, so I guess a total of five attempts at slightly less than $50 each.


I called Apple, spent a long time trying to talk to a human, finally got one and she just directed me to the web site / send an email, which I did. Now I wait 24 hours to determine the resolution.


I called PayPal, and they are stopping all payment to Apple. Yay PayPal! From this point forward, I will be removing PayPal from my iTunes account (no fault of PayPal, they are great) and using store purchased iTunes gift cards. Just want to limit my exposure in the future.


Changed all my passwords, so that should stop any future bleeding. Unfortunately, there are a total of four computers authorized for my Apple ID, and I only have three, so I am going to try to find one more PC to install so I can de-authorize all. Seems odd that I can't kick one off, like I can with Netflix.


On top of all this, I am out of town on vacation.


The common thread was the World War app, v1.54, Seller: Storm8 LLC was common to every one of my unauthorized purchases. I remember updating my apps and the list showed accurate on my iPad, but somehow the app (?) must've sent my info to someone and they've been trying to buy stuff.


I have not updated my apps and won't until I get this resolved through Apple and transfer over to iTunes gift cards.


Good luck to all, I'm going to do some housecleaning on my apps.

Jun 29, 2011 6:09 AM in response to lordkaosu

Go back through the thread. I posted on May 28/29th. It IS happening to gift cards as evidenced by my account. Daughter went to download songs/apps using a giftcard balance, we are trying to live on cash basis only, and it was drained. ITunes did refund within 24 hours, I reactivated account, but as previous posters have stated and I've started doing. We now keep a "wish list" and when we have enough to use a balance on a card we enter and purchase.


I buy a pack of smaller denominations at Sam's Club and when we have $10 we use a $10 card, of course you can use other amounts but that works for us with one teen and 2 adults purchasing so no loss.

Jun 29, 2011 8:11 AM in response to lordkaosu

Near the time frame I was hacked and started researching, before it became so "epidemic", credit cards were hacked as well, reading through the posts there was a trend of purchases on hacked accounts being traced to Maryland.


However the original point still stands - not having a linked account prevents any additional loss and it IS better/safer to use a gift card if used all at once, and if not, you only stand to lose the remaining balance and it involves one email/call to fix, and hopefully get your refund.

Jun 29, 2011 9:07 AM in response to lorifromharrisburg

Lori is absolutely right. Use a gift card with just as much as you need to make your purchases and do not have any additional funding sources tied to your iTunes account. Since my account was hacked a few weeks ago, I have read horror stories about funds being drained from debit cards, credit cards (Visa and Amex) and PayPal. If you are linked to any other funding sources besides your iTunes balance, you are vulnerable.


Let me say that after my account was hacked, Apple did me right by refunding my iTunes balance (plus a couple of bucks, for some reason) and PayPal reversed the $90+ bucks that was stolen. So I'm good now, with a new user name, changed password and security questions and no outside funding sources. This is still troubling for so many reasons, though, mainly that this keeps happening to so many people and that Apple doesn't seem to have any comment.


I'm afraid that the story at http://china.globaltimes.cn/society/2011-01/609351.html is accurate, because it seems to follow the modus operandi of these hackers: get in, spend a little bit in small increments, and get out, without causing a disturbance. The accounts aren't being individually hacked, but hacked in large scale and then sold one by one in China. At first I thought that maybe the points/coins/credits within the games were being sold for profit.

Jul 1, 2011 12:21 PM in response to stereocourier

Good news - after a couple of days trading emails back and forth with a very helpful Apple employee named Boom, all purchases made while hacked have been removed, account reinstated, and now I can update apps, etc. I ended up going with $10 iTunes gift cards, so that just in case this happens again in the future, I'll only have $10 or less exposed.

iTunes store account hacked

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.