stereocourier

Q: iTunes store account hacked

I'm posting this just to share my story and get reactions. It's a little detailed but I thought worth sharing.

On November 23, 2010 I purchased a single song from the iTunes store for .99. I used store credit that I had from a gift card I received last year. It was the first purchase I had made since July 2010.

On November 25, 2010 I received a receipt for 2 more separate orders to my account. These were for over $50 in iPhones apps. Here's a sampling of some of the purchases:

1 eREAD isoshu, v1.5, Seller: ChengDu YueTong Internet Information Co. Ltd (17+)
2 Plants vs. Zombies, v1.3, Seller: PopCap Games, Inc. (iDP)
3 Monkey Island 2 Special Edition: LeChuck's Revenge, v1.1, Seller: Lucasfilm International Services Inc.
4 Asphalt 5, v1.2.6, Seller: Gameloft (9+)
5 Let's Golf!® 2, v1.0.1, Seller: Gameloft (4+)
6 Frames & FX for Photos, v2.5.1, Seller: Imikimi, LLC (12+)
7 Stenches: A Zombie Tale of Trenches, v1.0.1, Seller: Thunder Game Works (9+)

I do not have a credit card linked to my account, so these were made using my store credit.

I have only 1 computer authorized for my account (my personal home computer). I live alone and no one else touches my Powerbook but me. I also DO NOT own an iPhone, so I would have no interest in apps.

After I saw these bizarre purchases, I checked my account. I noticed 2 strange things: My account information had changed: My street address was correct, but city, state and zip had changed to: Towson, MD 21286-7840. I have never lived in Maryland. Also, I noticed that my password recovery answer had changed to "Murray" in response to a question about my mother's maiden name. That's decidedly NOT my mother's maiden name. Also, my birthdate had changed to an incorrect month and day.

I immediately changed my password and my recovery question/answer challenge.

I reported problems on all of these purchases and also contacted iTunes Account Support by e-mail.

Within 24 hours I received an e-mail from "Vicki" at iTunes Customer Support. She wrote:

"When reviewing over your account "name@domain.net" and the two reported orders, it shows that the content purchased within them was acquired from the computer that is currently authorized for your iTunes account. So I strongly advise that you do consult with those in your household regarding the purchases made, and the charges that resulted from those purchases."

Further:

"I have gone and reversed the charges for the two orders....You will see a store credit in three to five business days....Please note that this is a one-time exception, as the iTunes Store Terms and Conditions state that all sales are final."

I am pleased that Apple is refunding my store credit and replied so quickly.

However, it is simply impossible that these purchases were made from my computer. Again, my Powerbook is the only computer I have ever authorized to access my account, and I am the only person with access to it.

I am not sure how this happened. Any thoughts or similar experiences?

Powerbook G4, Mac OS X (10.5.8)

Posted on Nov 28, 2010 3:45 PM

Close

Q: iTunes store account hacked

  • All replies
  • Helpful answers

first Previous Page 72 of 131 last Next
  • by FangSuede,

    FangSuede FangSuede Feb 3, 2012 9:16 AM in response to MadScientistZ
    Level 4 (2,199 points)
    Feb 3, 2012 9:16 AM in response to MadScientistZ

    All you have to do is read a few of these stories, and this and this and you'll know you are right.

    Apple is covering this up and can't fix it. 

    They have bins full of money and it's easier to refund your stolen money that to fix the chinese side of things.

    Can't offend the actual people that make their products you know.

  • by MadScientistZ,

    MadScientistZ MadScientistZ Feb 3, 2012 9:29 AM in response to FangSuede
    Level 1 (0 points)
    Feb 3, 2012 9:29 AM in response to FangSuede

    Again, it is my professional opinion that the account names and passwords are being hacked from Apple's servers. In my case it was not possible to get the information from my 2 computers. The only other place that both my name and password existed was on Apple's own servers.

     

    You are also absolutely correct: according to their last SEC filing Apple is sitting on $81,570,000,000 in cash.

     

    For now it is easier for Apple to just lie to their customers ("I would like to inform you that, it was not hacked by Apple servers." Yeah, I know Apple's servers didn't hack anything. It's Apple's servers that HAVE BEEN HACKED).

     

    I really don't know if Apple was ever the company that I thought it was; but it sure ain't an ethical place now.

  • by kwmcc,

    kwmcc kwmcc Feb 3, 2012 5:53 PM in response to MadScientistZ
    Level 1 (0 points)
    Feb 3, 2012 5:53 PM in response to MadScientistZ

    My fond hope is that Apple, along with authorities in multiple countries, are working on this.

     

    If that's the case, we won't hear anything (nor should we) until we see an anouncement like:  "Chinese authorities, working with Interpol and the FBI have arrested dozens of hackers responsible for world-wide break-ins of iTunes."

     

    Let's keep our fingers crossed ....

  • by LKTRDG,

    LKTRDG LKTRDG Feb 4, 2012 2:24 AM in response to funwakinmade
    Level 1 (0 points)
    Feb 4, 2012 2:24 AM in response to funwakinmade

    go to this link and click on the Expreess Lane support for iTunes.

     

    http://www.apple.com/de/support/itunes/contact/

     

    Here you can contact iTunes and report a fraud.

  • by TheCBB,

    TheCBB TheCBB Feb 5, 2012 12:07 PM in response to stereocourier
    Level 1 (0 points)
    Feb 5, 2012 12:07 PM in response to stereocourier

    Just happened to me for the second time (first time was about a year ago).  The advice that I read about back then and immediately followed, is do not have any external payment account connected to your account (credit card, etc.)  That way you only have to deal with them taking the credits you already have in your account and not also stacking huge charges on your external accounts.

  • by jcoffman99,

    jcoffman99 jcoffman99 Feb 6, 2012 7:15 AM in response to TheCBB
    Level 1 (0 points)
    Feb 6, 2012 7:15 AM in response to TheCBB

    This happened to me last night. Got the email from Apple saying to check as an unauthozied computer downloaded songs.  Yep sure enough, my giftcard balance was gone.  I love how in the email all they say is you should change your password.  How about a link that if it was hacked, to reoprt it. Grrr...

  • by Magda_M,

    Magda_M Magda_M Feb 6, 2012 10:00 AM in response to stereocourier
    Level 1 (0 points)
    Feb 6, 2012 10:00 AM in response to stereocourier

    I've had my iTunes account for years and years and never experienced a problem then yesterday for the first time EVER I enter in a gift card and now all of a sudden my account gets hacked.

     

    I received an email from Apple saying my apple id was being used on a device previously unauthorized. With weird Chinese characters as the app name. When I logged into iTunes I saw that my "credit" went down to $3 and just yesterday it was $25 while I have not purchased anything. When I checked my account my CC info has been deleted. No other changes have been made.

     

    I find it intriguing how many of the reports include a depleted gift card. I'm wondering if the "redeem" page I used is the problem here and that's how these hackers got the info.

     

    The only way someone would know my password would be to steal it from Apple. I'm using a brand new MBP and it hasn't left the house yet. No one else uses this computer. My wireless network is secure.

     

    I do have a new iPad 2 that was authorized as a device about a month ago. But I've made many purchases between when I first got it and yesterday and no unauthorized activities took place until I entered in that gift card.

  • by JaneApple,

    JaneApple JaneApple Feb 6, 2012 5:38 PM in response to stereocourier
    Level 1 (0 points)
    Feb 6, 2012 5:38 PM in response to stereocourier

    Here's a story ... disclosure I work at The Global Mail ... but I didn't write this story! But I was hacked! I cannot work out why more isn't being reported on this as it's clearly so widespread, truly around the world.

     

    http://www.theglobalmail.org/feature/hacking-worm-holes-in-itunes/31/

  • by kcwpvd,

    kcwpvd kcwpvd Feb 6, 2012 6:16 PM in response to stereocourier
    Level 1 (0 points)
    Feb 6, 2012 6:16 PM in response to stereocourier

    Mine was just hacked as well, and I'll be damned if I know how, although I think MadScientistZ has it. The telltale was two purchases on the iPad that requested entry of the CVV for my credit card and then double entry of my password which is classic hacker MO to ensure they have the right info. Canceled the CC, reset the password and vowed never to do it again.

  • by elitez28,

    elitez28 elitez28 Feb 7, 2012 7:26 AM in response to stereocourier
    Level 1 (0 points)
    Feb 7, 2012 7:26 AM in response to stereocourier

    I was just hacked too... My account is linked to my PayPal that's linked to my checking and they literally stole all of my money in my checking account. Already sent in the support ticket, not very happy at this point.

  • by Carlo TD,

    Carlo TD Carlo TD Feb 7, 2012 7:46 AM in response to elitez28
    Level 3 (558 points)
    Feb 7, 2012 7:46 AM in response to elitez28

    You will have to read

     

    https://cms.paypal.com/my/cgi-bin/?cmd=_render-content&content_ID=ua/UserAgreeme nt_full#12.%20Disputes%20with%20PayPal.

     

    You will also have to go to your bank and fill out an EFT Dispute.

  • by nielsenj,

    nielsenj nielsenj Feb 7, 2012 5:15 PM in response to stereocourier
    Level 1 (0 points)
    Feb 7, 2012 5:15 PM in response to stereocourier

    Just happened to me today.

     

    Same QQ + four chinese character app people have mentioned before. As well as a few bulk packs of songs.

     

    Apple ID Password is completely random and isn't used on any other account. Has only been entered into legitimate Apple apps and websites.

     

    I find it odd and worrisome. The only benefit was i didn't have a CC attached to the account.

  • by crimsonfox62,

    crimsonfox62 crimsonfox62 Feb 8, 2012 7:38 AM in response to stereocourier
    Level 1 (0 points)
    Feb 8, 2012 7:38 AM in response to stereocourier

    I've been hacked twice in the last couple of days. Amount deducted from my gift card credit. Apple told me it must have been an in-app I downloaded by accident. Rubbish!!!! Not impresseed

  • by shrewatthemeadow,

    shrewatthemeadow shrewatthemeadow Feb 8, 2012 9:23 AM in response to stereocourier
    Level 1 (0 points)
    Feb 8, 2012 9:23 AM in response to stereocourier

    Happened to me this morning. had 24ish quid on my acccount, and now had 33p. Gone out as Kingdom Conquest. Reported to Apple through express lane(did in store), but is there anything else i need to do?

     

    Cheers

  • by shrewatthemeadow,

    shrewatthemeadow shrewatthemeadow Feb 8, 2012 9:33 AM in response to shrewatthemeadow
    Level 1 (0 points)
    Feb 8, 2012 9:33 AM in response to shrewatthemeadow

    To be fair to Apple, they have already replied and refunded my account. Still quite disconcerting though!

first Previous Page 72 of 131 last Next