You can make a difference in the Apple Support Community!

When you sign up with your Apple Account, you can provide valuable feedback to other community members by upvoting helpful replies and User Tips.

Looks like no one’s replied in a while. To start the conversation again, simply ask a new question.

iTunes store account hacked

I'm posting this just to share my story and get reactions. It's a little detailed but I thought worth sharing.

On November 23, 2010 I purchased a single song from the iTunes store for .99. I used store credit that I had from a gift card I received last year. It was the first purchase I had made since July 2010.

On November 25, 2010 I received a receipt for 2 more separate orders to my account. These were for over $50 in iPhones apps. Here's a sampling of some of the purchases:

1 eREAD isoshu, v1.5, Seller: ChengDu YueTong Internet Information Co. Ltd (17+)
2 Plants vs. Zombies, v1.3, Seller: PopCap Games, Inc. (iDP)
3 Monkey Island 2 Special Edition: LeChuck's Revenge, v1.1, Seller: Lucasfilm International Services Inc.
4 Asphalt 5, v1.2.6, Seller: Gameloft (9+)
5 Let's Golf!® 2, v1.0.1, Seller: Gameloft (4+)
6 Frames & FX for Photos, v2.5.1, Seller: Imikimi, LLC (12+)
7 Stenches: A Zombie Tale of Trenches, v1.0.1, Seller: Thunder Game Works (9+)

I do not have a credit card linked to my account, so these were made using my store credit.

I have only 1 computer authorized for my account (my personal home computer). I live alone and no one else touches my Powerbook but me. I also DO NOT own an iPhone, so I would have no interest in apps.

After I saw these bizarre purchases, I checked my account. I noticed 2 strange things: My account information had changed: My street address was correct, but city, state and zip had changed to: Towson, MD 21286-7840. I have never lived in Maryland. Also, I noticed that my password recovery answer had changed to "Murray" in response to a question about my mother's maiden name. That's decidedly NOT my mother's maiden name. Also, my birthdate had changed to an incorrect month and day.

I immediately changed my password and my recovery question/answer challenge.

I reported problems on all of these purchases and also contacted iTunes Account Support by e-mail.

Within 24 hours I received an e-mail from "Vicki" at iTunes Customer Support. She wrote:

"When reviewing over your account "name@domain.net" and the two reported orders, it shows that the content purchased within them was acquired from the computer that is currently authorized for your iTunes account. So I strongly advise that you do consult with those in your household regarding the purchases made, and the charges that resulted from those purchases."

Further:

"I have gone and reversed the charges for the two orders....You will see a store credit in three to five business days....Please note that this is a one-time exception, as the iTunes Store Terms and Conditions state that all sales are final."

I am pleased that Apple is refunding my store credit and replied so quickly.

However, it is simply impossible that these purchases were made from my computer. Again, my Powerbook is the only computer I have ever authorized to access my account, and I am the only person with access to it.

I am not sure how this happened. Any thoughts or similar experiences?

Powerbook G4, Mac OS X (10.5.8)

Posted on Nov 28, 2010 3:43 PM

Reply
1,958 replies

Aug 8, 2011 9:21 AM in response to stereocourier

@baba

With respect there are 567 replies and I really don't have time to read them all at the moment to find the correct contact details, instead I phoned CS and spoke to a Sebastian.

Sebastian was quite nonchalant about my dilemma, he said that there was nothing he could do and my reported problem would be answered within 48hrs!


I chalanged him regards this problem and he said "he is unaware of it" 😁😁😁😁😁


Sebastian told me that are NO phone numbers at Apple or Itunes😮 that I can dial to speak to someone about account fraud and I have to admit that I cant find any either, when I have an hour or two to spare I will have a trawl through all the posts to see if anyone has successfully spoken to Itune/Apple about the fraud, but if anyone can put an old guy out of his misery buy just posting the number again I will be eternally grateful.🙂

Aug 8, 2011 8:30 PM in response to stereocourier

Yet another victim on the roster here. I am VERY glad I never put a cc on my account, there was only $27 in credits that got stolen.


I do not have any web-enabled iOS devices and only access iTunes from one single PC, in my home with good security practices. I received the typical email:


from Apple do_not_reply@apple.com

to ME

date Mon, Aug 8, 2011 at 1:01 AM

subject Your recent purchase with your Apple ID.

Images from this sender are always displayed. Don't display from now on.

hide details 1:01 AM (21 hours ago)

Dear ME,

Your Apple ID, ME, was just used to purchase Texas Poker from the App Store on a computer or device that had not previously been associated with that Apple ID.

If you made this purchase, you can disregard this email. This email was sent as a safeguard designed to protect you against unauthorized purchases.

If you did not make this purchase, we recommend that you go to iforgot.apple.com to change your password, then see Apple ID: Tips for protecting the security of your account for further assistance.

Regards,

Apple


I do not have any devices capable of using this app, nor did I ever purchase it. The app is free but the thieves also purchased $27.95 in poker chips for it, cleaning my account out to leave $0.56


I have written to Apple and it remains to be seen whether they will reply in a timely fashion and refund my account.


I have also changed both my Apple ID email and the password on it.


I'm thinking Amazon might be a safer place to buy MP3's.


- crAsh

Aug 8, 2011 9:27 PM in response to crAsh RR

Apple refunded my account today, bout 3 days after my email to them so no complaints here about that.

Although, something needs to be done about this. There are patterns, same developers apps being charged, same games, surely Apple can do something.


I am yet to have any issues with other services that have my CC on file (touch wood). Will only use vouchers from now on, at least Apple can refund my credit as opposed to having to get my bank involved if its charged to my CC.

Aug 9, 2011 6:13 PM in response to stereocourier

Add me too...last night I got hacked. I got an email from Apple stating that the purchase was from an unauthorized device. When I looked into it, I found $28.95 missing from my itunes account and kingdom conquest purchases equalling that amount on my previous purchases. I never heard of the game until today when I researched it. I changed my passwords and security information and notified Apple. I am feeling sort of violated as I always thought itunes was secure. I am happy that I didn't have a credit card on the account, just gift cards.

Aug 9, 2011 10:10 PM in response to stereocourier

Got this back from Apple (72 hours later) It need to be read as an email backwards of course:-


Hi Amadeus,


Thank you for your response, let me say that I am deeply concerned with regard to what has happened to my account, largely because I do not understand the mechanics of how this has occurred. When I realised something was wrong and after I changed my password I googled "ITunes account hacked" and was truly amazed at the magnitude of the problem. I subscribed to a single blog "Apple Support Community" and elected to receive posts from just a single from many threads on this subject, the posts from this thread alone are coming in almost hourly all stating that users accounts have been hacked!


Apple/ITunes clearly have a major problem and from what I read this has been going unchecked for some considerable time.


What I fail to understand that why ITunes informed me that my account had been changed and then WITHOUT confirmation that I had made that change allowed two purchases within two minutes of the change, why was the account not blocked until I has a chance to inform ITunes that it was not me? Surely I would need to respond to the first email before I could use my account, is this not a simple safeguard??


I do appreciate your consideration but can't help to be worried that this won't happen again, what assurance can you give me?


I was so impressed with my Ipod it was my intention to purchase 3 x Ipad this Xmas for Myself, my Wife and my Daughter, this idea is now on hold, as is the purchase of any more gift vouchers until this problem has been resolved, I really feel uncomfortable with the Apple products and need some tangible assurance that it is impossible for this to happen again.


I just thank myself for not linking my account to a credit card.


Just one further question how long will my account be frozen?


Best regards

Steve



-----Original Message-----
From: iTunes Store [mailto:iTunesStoreSupport@apple.com]
Sent: 09 August 2011 6:43 PM
To: XXXXXXXXXXX@XXXXXX.com
Subject: Re: My concern is not listed here; Follow-up: xxxxxxxxxxxxx


Greetings Steve,


My name is Amadeus and from reading your mail I see there is some concern that you have been fleeced for 15.98. It always pains me to hear about unauthorized activity on one of our customer's iTunes Store accounts as a man that has been through it three times myself with various other online stores, and I will do my best to provide you with the necessary information to resolve this matter quickly and concisely.


I apologize for the delay in responding, we've been experiencing some higher service levels lately and we are a wee bit behind. I see also you requested someone to call on the telephone. If I could call you, or have you call me it would certainly be a delight but unfortunately we have no telephone service for account issues nor do we even have telephones at our desk. It's all email based. But, allow me the chance to explain exactly what is going on, how we can and are helping you, and how to proceed.


To prevent further purchasing I have disabled your account for the time being. **Take heed, disabling your account will prevent future orders from being opened while the account is still disabled but will not prevent already open orders from clearing. **Also note that you may still access your account and check your purchase history or even make changes to the account (change password, remove credit card, etc). A disabled account does not have the option to make a purchase or download content.


After reviewing the circumstances of your case, we determined that issuing you a refund for the items that were purchased without your permission is an appropriate exception to the iTunes Store Terms and Conditions, which state that all sales are final. A refund in the amount of 15.98 will be credited to the payment method(s) that were used to pay for the items within 10 working days.


To increase the security of your account I highly recommend that you follow the suggestions outlined in the following article:


iTunes Store: Best practices for protecting the security of your account

http://support.apple.com/kb/HT4156


If you suspect you are the victim of identity theft, consider following these recommendations:


- Contact the fraud departments of any consumer reporting company to place a fraud alert on your credit report.


- Close the accounts that you believe have been used without your knowledge.


If and when you would like to have your account enabled again you need only reply with the following information for verification purposes:


- the billing address listed on the account (number, street, city, state and zip code [postal code])


...as well as one of the following:


- any recent order number that was authorized by yourself that is not the number(s) you reported (you can locate order numbers by following these instructions: http://support.apple.com/kb/HT2727)

- or the name of any item you've purchased or downloaded (free app) using this account (please be specific, the name of an artist or a TV show title is not specific enough)


Once I receive this information please give me a few days to verify the account and I will send you a mail with further instructions.


If you have further questions or concerns in the meantime, please feel free to reply and I'll gladly address them. In light of the current circumstances I do hope you have a pleasant day Steve.


Kind regards,


Amadeus

iTunes Store/Mac App Store Customer Support

Sunday to Saturday, 8a.m., to 4:30p.m. Sunday, Saturday OFF.


Thank-you for allowing me the opportunity to assist you. You may receive an AppleCare survey e-mail; any feedback you provide would be greatly appreciated.


Customer First Name : xxxxxx

Customer Last Name : xxxxxx

email : XXXXXXXXXXX@XXXXXX.com

Web Order # : xxxxxxxxxxxx

Support Subject : My concern is not listed here

Sub Issue : Other Question

Comments : Apple ID: XXXXXXXXXXX@XXXXXX.com

Platform : iTunes/10.3.1 (Windows; Microsoft Windows XP Professional Service Pack 2 (Build 2600)) AppleWebKit/533.21.1

PlayList Name : Short D*ck Man

Comments :

This is the second time I have reported this fraud. I did not purcahse this, no one else has access to my PC. My account has been HACKED, I need your assistance. Ma account was changed at 04:35 Sunday 07/08/2011 not by me and the purcahses were made 04:37 again not by me. I have since changed my password. My account has been compromised I need you to respond and help me. I have been robbed. Please respond

Aug 9, 2011 10:46 PM in response to stereocourier

I think it is time to find alternatives to iTunes. Meanwhile, change all your internet passwords at least every 3 months. The next big thing already IS cybercrime. All they have to do is sit in their living room and raid other peoples accounts. Apparently is isn't even that difficult to figure out how to do, and they are passing around the information to all their friends. Apple is probably much more freaked out than we realize, but they certainly can't do anything to protect their customers. It's up to you.

Aug 10, 2011 12:40 AM in response to stereocourier

My account was hacked a while back - it has not happened again (yet).


I was wondering why the accounts are being hacked & how the perpetrators benefit from buying an app on your behalf. Of course it's not buying the app that they get any benefit from. It's from the in app purchases. So, in my case they purchased a poker game and then a load of chips. I have since installed the poker app on my iPad (since it was in my list of purchased apps even after Apple gave me the refund) - it works fine but there are no extra chips that were bought as an in app purchase. They will have been sold on the Internet ... and that's how the perpetrators are making money from the hack. I did a search on Google and sure enough there are people selling poker chips for the app.

Aug 10, 2011 5:12 PM in response to stereocourier

I woke up this morning to find an email telling me that my credit card and shipping address were changed for my apple itunes account. There was also another email telling me that the app KingdomConquest was purchased on a device that was previously not authorized on my account. I went to sign into my account to find that the account was frozen and that I had to change my password. I took care of that and changed my login info. My address was correct so i don't understand and there was no credit card info on the account. (I think I used to have a cc here but can't remember, don't use itunes often.) The app was billed to my account and two other 40 something dollar charges to SEGA something. I lost about 98 bucks in one swoop.


I called apple support today and am waiting to hear back. It is good to read that they are rapidly refunding the money but I really want to know how this scam is being accomplished. I keep a very secure computer and there is no way i was scammed via email, I'm not that gullable.


Guess I will wait and see what happens. I am at least happy to know this isn't just me and an isolated incident. I am a bit upset with what I've read about this issue and Apple's "ignore the issue attitude" I've been reading about. I am new to Apple and was considering changing from a Droid to the Iphone 5 when it comes out but this sours me a bit....

Aug 10, 2011 6:35 PM in response to stereocourier

Just an update. I contacted Apple last night and within less than 24 hours, I received a response. They sent me the same email that many of you received and stated that they will refund my money within 5-7 days. My account was also deauthorized (I guess for my protection). I was very pleased with the customer service and quick response, but the tone of the email was a bit disappointing. I felt like I was being accused of causing this to happen. I am not sure how this happened as I am super careful with passwords and virus protection. It seems as though there is a breach and I won't be using my account until it is fixed. I have always been an Apple fan until now...

Aug 11, 2011 10:07 PM in response to aircool

Relax..


My account was still locked the day before Lion was released (the Gift card balance was for Lion)

I simply emailed the person I was dealing with and politely asked if there was anyway my Apple Id could be re enabled in time for Lion.

About 45 minutes later I got the email stating the money was back in, and the account was good to go. (it was)

But I had to once again change my Password to get back in.


And don't punish yourself with an Android... you will regret it.

Aug 11, 2011 10:58 PM in response to stereocourier

Well Zenobius, you obviously have more luck than me, I have emailed customer support no less than seven times over the last week and have only had one reply, which informed be in an accusing way, that on this occasion they would refund the my money that THEY had let someone else use, but this was an exception.


They failed to answer the most fundamental question I asked, "why did they allow two downloads two minutes after my details were changed without confirmation that it was I that changed these details".


They have given no assurances that they will endeavour to cure this massive security issue, in fact they have not aknowledged that one exists, I have spoken to tech support and an Apple shop both stated that they had never heard of the problem, although the shop did inicate finally that they are experiencing security problems but would not elaborate.


If Apple elect to use electronic communication then they should have the resource to conduct it "Live", it is ubacceptable for a customer whose account is violated and then suspended and whose questions go unanswered to need to rely on email, which in my experience often goes unanswered.


On the subject of Android my Daughter bought a "budget" tablet and has had no problems at all with it, given it isn't as "glossy" but it is far more functional and adaptable.


Further my HTC Desire far outstrips my IPhone 4, although the Iphone is better for games but thats not why you have a phone is it?


Sorry Apple is not for me.

Aug 12, 2011 12:23 AM in response to crAsh RR

Hello, the same happened to me and approx. 64 Euros have gone.

Of course I´ve changed the password and removed all allowed pc´s from the account. (It is bad that I cannot see which one had been added last. Only numbers have been shown)

Other companies show you much more PC informations)

The big problem is, that apple does not ask for a master account password if you want to add a new pc.

Even my doughters internet based learning game from a German trustable company, with a long history, has such a "parent" function.

I would strongly recommend to Apple to add in such a function for every action by allowing the user to switch it off and on.

So Login and purchase have different passwords and makes life not easier but secure the money.

I will see if I get charged back.

So far I was happy with Itunes and the warning functionality is a very good thing, but in this case I checked my e-mail account 10 hours to late :-(

iTunes store account hacked

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.