stereocourier

Q: iTunes store account hacked

I'm posting this just to share my story and get reactions. It's a little detailed but I thought worth sharing.

On November 23, 2010 I purchased a single song from the iTunes store for .99. I used store credit that I had from a gift card I received last year. It was the first purchase I had made since July 2010.

On November 25, 2010 I received a receipt for 2 more separate orders to my account. These were for over $50 in iPhones apps. Here's a sampling of some of the purchases:

1 eREAD isoshu, v1.5, Seller: ChengDu YueTong Internet Information Co. Ltd (17+)
2 Plants vs. Zombies, v1.3, Seller: PopCap Games, Inc. (iDP)
3 Monkey Island 2 Special Edition: LeChuck's Revenge, v1.1, Seller: Lucasfilm International Services Inc.
4 Asphalt 5, v1.2.6, Seller: Gameloft (9+)
5 Let's Golf!® 2, v1.0.1, Seller: Gameloft (4+)
6 Frames & FX for Photos, v2.5.1, Seller: Imikimi, LLC (12+)
7 Stenches: A Zombie Tale of Trenches, v1.0.1, Seller: Thunder Game Works (9+)

I do not have a credit card linked to my account, so these were made using my store credit.

I have only 1 computer authorized for my account (my personal home computer). I live alone and no one else touches my Powerbook but me. I also DO NOT own an iPhone, so I would have no interest in apps.

After I saw these bizarre purchases, I checked my account. I noticed 2 strange things: My account information had changed: My street address was correct, but city, state and zip had changed to: Towson, MD 21286-7840. I have never lived in Maryland. Also, I noticed that my password recovery answer had changed to "Murray" in response to a question about my mother's maiden name. That's decidedly NOT my mother's maiden name. Also, my birthdate had changed to an incorrect month and day.

I immediately changed my password and my recovery question/answer challenge.

I reported problems on all of these purchases and also contacted iTunes Account Support by e-mail.

Within 24 hours I received an e-mail from "Vicki" at iTunes Customer Support. She wrote:

"When reviewing over your account "name@domain.net" and the two reported orders, it shows that the content purchased within them was acquired from the computer that is currently authorized for your iTunes account. So I strongly advise that you do consult with those in your household regarding the purchases made, and the charges that resulted from those purchases."

Further:

"I have gone and reversed the charges for the two orders....You will see a store credit in three to five business days....Please note that this is a one-time exception, as the iTunes Store Terms and Conditions state that all sales are final."

I am pleased that Apple is refunding my store credit and replied so quickly.

However, it is simply impossible that these purchases were made from my computer. Again, my Powerbook is the only computer I have ever authorized to access my account, and I am the only person with access to it.

I am not sure how this happened. Any thoughts or similar experiences?

Powerbook G4, Mac OS X (10.5.8)

Posted on Nov 28, 2010 3:45 PM

Close

Q: iTunes store account hacked

  • All replies
  • Helpful answers

first Previous Page 86 of 131 last Next
  • by rob63,

    rob63 rob63 Mar 5, 2012 7:58 AM in response to lluke71
    Level 1 (0 points)
    Mar 5, 2012 7:58 AM in response to lluke71

    My account apparently hacked early in the morning as well. The app was Haypi Dragon and got instant alert of 2 charges. Changed pw immediately. Waiting repsonse from Apple. So far it looks like I caught it early enough so no money lost at this point. Not a good way to start a Monday.

  • by JKFraser,

    JKFraser JKFraser Mar 5, 2012 9:30 AM in response to rob63
    Level 1 (0 points)
    Mar 5, 2012 9:30 AM in response to rob63

    Happened to me as well. Thankfully I never trusted iTunes (badly written peice of crap that it is) with my credit card info, but they did manage to take $20 in Gift card $. Apple support is giving me a refund, but what scared me was how blase they were about it. "Oh, no problem we will give you a refund, and maybe you should change your password and check your authorizations..."

     

    The app that drained my GC $ was never downloaded onto any of my devices or computers, and the device that downloaded it was not authorized. I literally watched them making in app purchases while I was talking to the rep. He didn't even express that they would be looking into the matter, or say they would go after the theif! They could at least say that hacking is not tolerated, and that they would be bricking the offender's device.

  • by rob63,

    rob63 rob63 Mar 5, 2012 9:35 AM in response to JKFraser
    Level 1 (0 points)
    Mar 5, 2012 9:35 AM in response to JKFraser

    I'm done with iTunes Store. Removing CC info. No more purchases. Security can't be trusted. End of story.

  • by PatrickGSR94,

    PatrickGSR94 PatrickGSR94 Mar 5, 2012 9:38 AM in response to rob63
    Level 1 (2 points)
    Mar 5, 2012 9:38 AM in response to rob63

    Unfortunately the iTunes terms of use, which we all had to agree to, pretty much says Apple is not responsible for losses due to hacking, among other things.

     

    But then where does that leave us?  Most of us have iPhones, and iPhones are pretty much useless without apps.  Sure we can get music elsewhere and put them on our phones and other devices, but apps pretty much have to come from the App Store unless you're using a jailbroken device.

  • by rob63,

    rob63 rob63 Mar 5, 2012 10:10 AM in response to PatrickGSR94
    Level 1 (0 points)
    Mar 5, 2012 10:10 AM in response to PatrickGSR94

    I'm jailbroken so no worries there. For the first time since I've had my account I recently gifted an app. My guess is whatever hack was used for gift cards may apply to apps that are gifted to someone? It would be nice to hear an official response from Apple but not holding my breath.

  • by Carlo TD,

    Carlo TD Carlo TD Mar 5, 2012 10:17 AM in response to rob63
    Level 3 (558 points)
    Mar 5, 2012 10:17 AM in response to rob63

    *lightbulb goes on* The idea that your jailbroken, could it contribute to your itunes account being hacked?

  • by rob63,

    rob63 rob63 Mar 5, 2012 10:35 AM in response to Carlo TD
    Level 1 (0 points)
    Mar 5, 2012 10:35 AM in response to Carlo TD

    Considering the presumable majority of non-jailbroken phones with this issue I would say it's probably no more likely. If you're just randomly downloading things and don't take security seriously then you will run into problems. The evidence thus far points to a security issue with the app store.

  • by Carlo TD,

    Carlo TD Carlo TD Mar 5, 2012 10:37 AM in response to rob63
    Level 3 (558 points)
    Mar 5, 2012 10:37 AM in response to rob63

    How could you say "the presumably majarority of non-jailbroken phones are with this issue... how do you know that for sure? It could be just the opposite of what you just stated?

  • by rob63,

    rob63 rob63 Mar 5, 2012 10:41 AM in response to Carlo TD
    Level 1 (0 points)
    Mar 5, 2012 10:41 AM in response to Carlo TD

    That's true that's why it's a presumption. Having a non-jailbroken phone won't prevent this from happening if ids and passwords have been compromised.

  • by sSickmann,

    sSickmann sSickmann Mar 5, 2012 10:43 AM in response to rob63
    Level 1 (0 points)
    Mar 5, 2012 10:43 AM in response to rob63

    I agree . . I dont even have a phone and got done

     

    I also agree that most people don't bother jail breaking their phone and that there would be a large number of them on this thread (the even that you could presume majority)

  • by Carlo TD,

    Carlo TD Carlo TD Mar 5, 2012 10:43 AM in response to rob63
    Level 3 (558 points)
    Mar 5, 2012 10:43 AM in response to rob63

    The idea that your jailbroken, could it contribute to your itunes account being hacked?

  • by sSickmann,

    sSickmann sSickmann Mar 5, 2012 10:45 AM in response to Carlo TD
    Level 1 (0 points)
    Mar 5, 2012 10:45 AM in response to Carlo TD

    No because I never had an iphone and I got hacked

  • by PatrickGSR94,

    PatrickGSR94 PatrickGSR94 Mar 5, 2012 10:47 AM in response to Carlo TD
    Level 1 (2 points)
    Mar 5, 2012 10:47 AM in response to Carlo TD

    Highly doubtful.  My phone is NOT jailbroken, but this issue really has nothing to do with iPhones at all.  It's strictly an iTunes account issue, and there are many more people with iTunes accounts than have iPhones.  Many have iPods, Macs, or other Apple devices, but may not have an iPhone, and this issue can still happen.

     

    I only mentioned being jailbroken as a possible way for getting apps if you did not want to use iTunes anymore.  But IMHO that really won't suffice either.  Sure there's tons of stuff on Cydia, but even that pales in comparison to what's available on the App Store.

  • by bshreffler,

    bshreffler bshreffler Mar 5, 2012 10:51 AM in response to PatrickGSR94
    Level 1 (0 points)
    Mar 5, 2012 10:51 AM in response to PatrickGSR94

    Agreed.  This is an iTunes problem not an iPhone problem.  My iPhone is not jailbroken.  I bet most of our fellow writers on this thread can say the same thing.  Where is Apple on all of this??  Day 8 and my id is still disabled.  I sent another message through the Express Lane....results...cricketts!

  • by cdwilson127,

    cdwilson127 cdwilson127 Mar 5, 2012 12:01 PM in response to bshreffler
    Level 1 (0 points)
    Mar 5, 2012 12:01 PM in response to bshreffler

    This is defiantly not a used problem, I put a 50$ gift card on

    My account 2 days ago, I used my windows

    Laptop, and I woke up yesterday with 30$ gone, the

    Main thing I see is gift cards being used, I had my credit card

    Attached to my iTunes account but they didn't use that..

first Previous Page 86 of 131 last Next