stereocourier

Q: iTunes store account hacked

I'm posting this just to share my story and get reactions. It's a little detailed but I thought worth sharing.

On November 23, 2010 I purchased a single song from the iTunes store for .99. I used store credit that I had from a gift card I received last year. It was the first purchase I had made since July 2010.

On November 25, 2010 I received a receipt for 2 more separate orders to my account. These were for over $50 in iPhones apps. Here's a sampling of some of the purchases:

1 eREAD isoshu, v1.5, Seller: ChengDu YueTong Internet Information Co. Ltd (17+)
2 Plants vs. Zombies, v1.3, Seller: PopCap Games, Inc. (iDP)
3 Monkey Island 2 Special Edition: LeChuck's Revenge, v1.1, Seller: Lucasfilm International Services Inc.
4 Asphalt 5, v1.2.6, Seller: Gameloft (9+)
5 Let's Golf!® 2, v1.0.1, Seller: Gameloft (4+)
6 Frames & FX for Photos, v2.5.1, Seller: Imikimi, LLC (12+)
7 Stenches: A Zombie Tale of Trenches, v1.0.1, Seller: Thunder Game Works (9+)

I do not have a credit card linked to my account, so these were made using my store credit.

I have only 1 computer authorized for my account (my personal home computer). I live alone and no one else touches my Powerbook but me. I also DO NOT own an iPhone, so I would have no interest in apps.

After I saw these bizarre purchases, I checked my account. I noticed 2 strange things: My account information had changed: My street address was correct, but city, state and zip had changed to: Towson, MD 21286-7840. I have never lived in Maryland. Also, I noticed that my password recovery answer had changed to "Murray" in response to a question about my mother's maiden name. That's decidedly NOT my mother's maiden name. Also, my birthdate had changed to an incorrect month and day.

I immediately changed my password and my recovery question/answer challenge.

I reported problems on all of these purchases and also contacted iTunes Account Support by e-mail.

Within 24 hours I received an e-mail from "Vicki" at iTunes Customer Support. She wrote:

"When reviewing over your account "name@domain.net" and the two reported orders, it shows that the content purchased within them was acquired from the computer that is currently authorized for your iTunes account. So I strongly advise that you do consult with those in your household regarding the purchases made, and the charges that resulted from those purchases."

Further:

"I have gone and reversed the charges for the two orders....You will see a store credit in three to five business days....Please note that this is a one-time exception, as the iTunes Store Terms and Conditions state that all sales are final."

I am pleased that Apple is refunding my store credit and replied so quickly.

However, it is simply impossible that these purchases were made from my computer. Again, my Powerbook is the only computer I have ever authorized to access my account, and I am the only person with access to it.

I am not sure how this happened. Any thoughts or similar experiences?

Powerbook G4, Mac OS X (10.5.8)

Posted on Nov 28, 2010 3:45 PM

Close

Q: iTunes store account hacked

  • All replies
  • Helpful answers

first Previous Page 83 of 131 last Next
  • by wampdog29,

    wampdog29 wampdog29 Feb 27, 2012 8:43 AM in response to navwizard
    Level 1 (0 points)
    Feb 27, 2012 8:43 AM in response to navwizard

    Navwizard, you still may want to contact Apple and reset your account/password. You let that go and eventually the hackers will take in -app purchases from your cash flow. I also wonder why I never saw the -Kingdom Conquest- App itself downloaded to my account though? All I ever got was an email from Apple saying the App was downloaded with my account, but it never showed up in my purchase history. Only the in-app pirchases showed up there.

     

    Also, as an update on my situation, I did get an email from Apple/ They told me to "block in-app purchases from my device in the settings." Ummmm guess what.... why would that help? I don't even have an iPod Touch anymore and no other devices. Also, if having an unauthorized device still allows someone to purchase from my account, why would a setting to a single deivce stop it through my overall account? It wouldn't.

     

    On a good note, PayPal as refunded ALL money owed back to me.

  • by wampdog29,

    wampdog29 wampdog29 Feb 27, 2012 8:45 AM in response to wampdog29
    Level 1 (0 points)
    Feb 27, 2012 8:45 AM in response to wampdog29

    Oh yeah, anyone know about reenabling your account? Apple disabled my account, and I never got a response back about how to reenable it. Someone mentioned the iForgot link, but that simply resets your password and othe rinfo. I already did that. Accoutn is still locked.

  • by cagrimes,

    cagrimes cagrimes Feb 27, 2012 9:02 AM in response to wampdog29
    Level 1 (0 points)
    Feb 27, 2012 9:02 AM in response to wampdog29

    Just got off a chat with Apple.  Obviously, their position is that I was hacked, not them.  Gee, I guess they think someone just "guessed" my appleid/password (along with everyone else who has had the same problem). 

     

    Anyway, according to the tech, we get to wait 48 hours then re-enable the account by starting a new express lane chat. 

     

    My new problem is that the tech said they have banned my credit card (which wasnt' used in the theft, just the gift card balance) which will really torque me off if I can't use the card I want to use. 

  • by cagrimes,

    cagrimes cagrimes Feb 27, 2012 9:04 AM in response to wampdog29
    Level 1 (0 points)
    Feb 27, 2012 9:04 AM in response to wampdog29

    Correct me if I'm wrong, but if whatever was downloaded was to a device never used before (what my email said), how is blocking in-app purchases on my iPhone going to stop some other (unauthorized by me) device from making an in-app purchase?

     

    Oh yeah, it won't. 

  • by dustinw82,

    dustinw82 dustinw82 Feb 27, 2012 9:07 AM in response to cagrimes
    Level 1 (0 points)
    Feb 27, 2012 9:07 AM in response to cagrimes

    That seems like total BS.  When I did an online chat, they disabled and reenabled my account all in one chat session.  They also didn't ban my credit card.  Must be who you get I guess.  It appears that there is no protocal for this and they just do whatever they feel like doing.

  • by MadScientistZ,

    MadScientistZ MadScientistZ Feb 27, 2012 9:44 AM in response to ituneslies
    Level 1 (0 points)
    Feb 27, 2012 9:44 AM in response to ituneslies

    A lot of us are looking forward to see this YouTube video.

  • by Lemon_head,

    Lemon_head Lemon_head Feb 28, 2012 5:05 AM in response to MadScientistZ
    Level 1 (0 points)
    Feb 28, 2012 5:05 AM in response to MadScientistZ

    After getting the 'your account has been disabled for security reasons' message and constantly having to reset my password over the last few days I went hunting for answers and found this thread amongst others. I've decided Apple is not to be trusted with my CC at all because of this and I have removed my CC details completely. I am fairly new to iTunes but if this is going to be an issue then I may as well not use it and just get my music from another reseller like Amazon and import into iTunes that way (Or just go back to using Foobar2000 with the iPod component).

     

    Get your act together Apple!

  • by bshreffler,

    bshreffler bshreffler Feb 28, 2012 8:23 AM in response to Eagerbob
    Level 1 (0 points)
    Feb 28, 2012 8:23 AM in response to Eagerbob

    Adding to my original post regarding my hack involving Kindom Conquest or what it is called: Apple contacted me within 24 hours, promised to restore my money ($47.60 - told me that this was a one-time gesture though as if it was my fault!), disabled my iTunes account (for an investigation), and told me that I'd need to request having my account restored, which I have done.  Like some here in this list, I'm a bit worried about providing my CC information to iTunes going forward.  Apple has been prompt to respond but it was not easy to get my concerns aired.  The "report a problem" link was not working properly.  Additionally, there is no number to use to talk to a person. 

     

    Pros for Apple in my case: quick response, polite response

    Cons: assuming that I am the problem, broken links for communicating problems, no way to communicate with a human on the phone to discuss the issue, and the denial that there is a bigger problem (where is the news on this??)

  • by bshreffler,

    bshreffler bshreffler Feb 28, 2012 8:24 AM in response to bshreffler
    Level 1 (0 points)
    Feb 28, 2012 8:24 AM in response to bshreffler

    FYI, my funds have not yet been restored.  Perhaps they are waiting to get the results of this investigation.

  • by manuriga,

    manuriga manuriga Feb 28, 2012 8:59 AM in response to stereocourier
    Level 1 (0 points)
    Feb 28, 2012 8:59 AM in response to stereocourier

    I am a victim too,  just got  hacked for 20 dollars .  someone bought  Happy City on my account from a not registered device.....   ITUNES shouldn't even allow non registered devices....

    happy city.JPGbe carefull for this crap  people

  • by jabij1,

    jabij1 jabij1 Feb 28, 2012 9:24 AM in response to manuriga
    Level 1 (0 points)
    Feb 28, 2012 9:24 AM in response to manuriga

    I emailed Apple yesterday and was refunded the full amount today. Not bad.

  • by Amartin79,

    Amartin79 Amartin79 Feb 28, 2012 10:33 AM in response to stereocourier
    Level 1 (0 points)
    Feb 28, 2012 10:33 AM in response to stereocourier

    Same thing happend to me....they stole 81$ and i contacted itunes and i explained everything and they refunde my money the next day. I asked them how did someone get into my account and do this and they said the same thing that someone could have gotten my user name and password cuz i was careless which is ******** cuz my **** phone never leaves my hand even when i sleep it it by my head on my bed.  I only use itunes on my cell so there has to be a way someone hacked into my cell phone and downloaded these app and stole my $. When i asked the apple rep if they could investigate they basically said they dont know how someone could have done it.  Its probably an inside job so Apple can get some money to pay for over expenses for Steve Jobs funeral.  Dumb ****! apple can kiss my ***

  • by yipingfromca,

    yipingfromca yipingfromca Feb 29, 2012 1:04 AM in response to Conorawr
    Level 1 (0 points)
    Feb 29, 2012 1:04 AM in response to Conorawr

    Hi, it is same one hacked me for USD80 and they are none stop!!! If Apple does not do anything not credit back to me, I will not use iTune store any more! It is too risky to post my info there and so far did not get any one to feedback me yet from apple. Did you got credit back? It is the same APP!!!

     

    Can you tell me how to report it?

     

    Thanks a lot!

  • by manuriga,

    manuriga manuriga Feb 29, 2012 1:32 AM in response to yipingfromca
    Level 1 (0 points)
    Feb 29, 2012 1:32 AM in response to yipingfromca

    send a mail to   ItunesStoreSupport@apple.com

     

    regards

  • by YUKON_HO,

    YUKON_HO YUKON_HO Feb 29, 2012 4:41 PM in response to stereocourier
    Level 1 (0 points)
    Feb 29, 2012 4:41 PM in response to stereocourier

    Well, I guess another me too story as usual.

    What bothers me is :

     

    1. Apple sent me e-mails saying

     

    "Your Apple ID, john.doe,  was just used to make a purchase in Vampire War from the App Store on a computer or device that had not previously been associated with that Apple ID.

    If you made this purchase, you can disregard this email. It was only sent to alert you in case you did not make the purchase yourself.

    If you did not make this purchase, we recommend that you go to iforgot.apple.com to change your password, then see Apple ID: Tips for protecting the security of your account for further assistance.

    Regards, Apple

    "

     

    I never get emails for making app purchases from my usual devices, so Apple suspected something.

     

    2. Apple didn't put any hold to the charges on my account, even though they suspect something fishy.  These charges were ~ $90, well over my usual spending limits. May be I will get my money back from apple but the fact that my account has been drained and that apple doesn't have clear instructions on what to do if you spot a fraud, is rather disgusting.

     

    I will never ever trust apple with my cc info, in future.

first Previous Page 83 of 131 last Next