stereocourier

Q: iTunes store account hacked

I'm posting this just to share my story and get reactions. It's a little detailed but I thought worth sharing.

On November 23, 2010 I purchased a single song from the iTunes store for .99. I used store credit that I had from a gift card I received last year. It was the first purchase I had made since July 2010.

On November 25, 2010 I received a receipt for 2 more separate orders to my account. These were for over $50 in iPhones apps. Here's a sampling of some of the purchases:

1 eREAD isoshu, v1.5, Seller: ChengDu YueTong Internet Information Co. Ltd (17+)
2 Plants vs. Zombies, v1.3, Seller: PopCap Games, Inc. (iDP)
3 Monkey Island 2 Special Edition: LeChuck's Revenge, v1.1, Seller: Lucasfilm International Services Inc.
4 Asphalt 5, v1.2.6, Seller: Gameloft (9+)
5 Let's Golf!® 2, v1.0.1, Seller: Gameloft (4+)
6 Frames & FX for Photos, v2.5.1, Seller: Imikimi, LLC (12+)
7 Stenches: A Zombie Tale of Trenches, v1.0.1, Seller: Thunder Game Works (9+)

I do not have a credit card linked to my account, so these were made using my store credit.

I have only 1 computer authorized for my account (my personal home computer). I live alone and no one else touches my Powerbook but me. I also DO NOT own an iPhone, so I would have no interest in apps.

After I saw these bizarre purchases, I checked my account. I noticed 2 strange things: My account information had changed: My street address was correct, but city, state and zip had changed to: Towson, MD 21286-7840. I have never lived in Maryland. Also, I noticed that my password recovery answer had changed to "Murray" in response to a question about my mother's maiden name. That's decidedly NOT my mother's maiden name. Also, my birthdate had changed to an incorrect month and day.

I immediately changed my password and my recovery question/answer challenge.

I reported problems on all of these purchases and also contacted iTunes Account Support by e-mail.

Within 24 hours I received an e-mail from "Vicki" at iTunes Customer Support. She wrote:

"When reviewing over your account "name@domain.net" and the two reported orders, it shows that the content purchased within them was acquired from the computer that is currently authorized for your iTunes account. So I strongly advise that you do consult with those in your household regarding the purchases made, and the charges that resulted from those purchases."

Further:

"I have gone and reversed the charges for the two orders....You will see a store credit in three to five business days....Please note that this is a one-time exception, as the iTunes Store Terms and Conditions state that all sales are final."

I am pleased that Apple is refunding my store credit and replied so quickly.

However, it is simply impossible that these purchases were made from my computer. Again, my Powerbook is the only computer I have ever authorized to access my account, and I am the only person with access to it.

I am not sure how this happened. Any thoughts or similar experiences?

Powerbook G4, Mac OS X (10.5.8)

Posted on Nov 28, 2010 3:45 PM

Close

Q: iTunes store account hacked

  • All replies
  • Helpful answers

first Previous Page 91 of 131 last Next
  • by geoffers1,

    geoffers1 geoffers1 Mar 8, 2012 12:52 PM in response to PatrickGSR94
    Level 1 (0 points)
    Mar 8, 2012 12:52 PM in response to PatrickGSR94

    Okay, understand the authorise/deauthorise now.

     

    I have changed my password on my account now and there is no credit card info stored for purchases anymore.

     

    Will wait until I hear back from Apple and hopefully get my money back.

  • by transmogrification,

    transmogrification transmogrification Mar 8, 2012 3:01 PM in response to PatrickGSR94
    Level 1 (5 points)
    Mar 8, 2012 3:01 PM in response to PatrickGSR94

    "Just found this on HowardForums, apparently there were several articles about this issue when it first started happening mid-2010"

     

     

    Those are all old posts refereing to "A rogue Vietnamese developer called Thuat Nguyen", who made apps that hacked users iTunes accounts.  He isn't back developing apps again is he? In fact, it looks like your list of old articles is from the HowardForum's post. What has been reported here seems to be completely different.

  • by PatrickGSR94,

    PatrickGSR94 PatrickGSR94 Mar 8, 2012 3:06 PM in response to transmogrification
    Level 1 (2 points)
    Mar 8, 2012 3:06 PM in response to transmogrification

    See the Nextag articles, they were saying it appeared not to be limited to a single developer.  Sounds VERY similar to what is STILL going on today.  And even if it's not, the fact that many accounts have and are being compromised remains common.

     

    Yes those articles were all from mid-2010 but I think Apple never really addressed the issue by beefing up security of sensitive information.

  • by iScary,

    iScary iScary Mar 8, 2012 4:03 PM in response to stereocourier
    Level 1 (0 points)
    Mar 8, 2012 4:03 PM in response to stereocourier

    Hi,

     

    My account as been hacked and my 50$ and I have $ 50 deducted from my account to buy Galaxy Empire, 700 Dark Matter in the $ 49.99 app, now wonder how I can do to solve this problem and maybe get my money? I already changed my password and dissociated credit card.

     

    Please Apple Help Me!!

     

    Regards

  • by HelpKaz,

    HelpKaz HelpKaz Mar 8, 2012 5:26 PM in response to stereocourier
    Level 1 (0 points)
    Mar 8, 2012 5:26 PM in response to stereocourier

    I woke up yesterday to an app purchased totally in Chinese. It was not done by me. The iTunes email said:

     

    文明复兴, 豪华金币箱       Hangzhou MR.GLEE Tech. co., Ltd      In App Purchase     £13.99

     

    I have changed my password but now have another app i did not purchase.

     

    Help

  • by TimHart,

    TimHart TimHart Mar 9, 2012 12:38 AM in response to HelpKaz
    Level 1 (0 points)
    Mar 9, 2012 12:38 AM in response to HelpKaz

    I had my account hacked many months back - it transpired that I'd had malware (i.e.a keylogger) running behind the scenes on a windows VM that I'd used a long time back to log into iTunes with. Luckily it was an old account that hadn't been used in some time and the card it was associated with had expired. It still didn't stop them buying about $40 worth of apps on it before Apple disabled the account.

     

    I guess what I'm saying is .. even though I use my mac as my main machine, all it took was a log-in to my (old) iTunes account on a compromised windows PC.

     

    Might be worthwhile some of you checking. I know this is almost certainly not the only cause of this across this forum - but it was for me.

     

    Hope that helps someone here.

  • by Themadalsatian,

    Themadalsatian Themadalsatian Mar 9, 2012 6:20 AM in response to stereocourier
    Level 1 (0 points)
    Mar 9, 2012 6:20 AM in response to stereocourier

    Well I had my account hacked in the last couple of days despite re-setting the password on my Apple Mac.  I thought they were hack-proof and so the problem was Apple's, but maybe not.  Mine was definitely caused by putting an iTunes gift token on, and the balance is now £0.12 thanks to whoever stole my money.  I re-set the password on another laptop at work yesterday, and it happened again last night (or at least I got another receipt this morning to say there had been another purchase).

  • by RainbowDrop,

    RainbowDrop RainbowDrop Mar 9, 2012 7:42 AM in response to HelpKaz
    Level 1 (0 points)
    Mar 9, 2012 7:42 AM in response to HelpKaz

    I had this exact thing happen to me! plus 2 apps. im left with 65p!

     

    Iv reset my password but where do i go from here?! Im not happy at all. This shouldnt be happening with a 'top' company such as Apple.

  • by Themadalsatian,

    Themadalsatian Themadalsatian Mar 9, 2012 9:27 AM in response to RainbowDrop
    Level 1 (0 points)
    Mar 9, 2012 9:27 AM in response to RainbowDrop

    RainbowDrop, if you phone Apple support and tell them what has happened they should refund your money, which is what they did for me (I'm still waiting for the credit but they say it takes up to 24 hours).  The thing is that they authorised the refund within seconds which makes me think they know they've got a problem, especially as they refused to say what they thought had gone wrong - they just said they've given me my money back and re-set my password, and to phone again if I still have a problem.

     

    I think it's Apple's fault (maybe someone hacking into their servers) as I can't believe malware is spying on 2 separate computers, one of them an Apple Mac, but they are refusing to admit to this.

  • by AdpiBriTX,

    AdpiBriTX AdpiBriTX Mar 10, 2012 1:26 PM in response to stereocourier
    Level 1 (0 points)
    Mar 10, 2012 1:26 PM in response to stereocourier

    This happened to me to the tune of $376.  All in HD movies and music.. And it went through my PayPal account.  PayPal started their investigation but I had eight separate charges that added up to $376 within thirty minutes while I was still sleeping.  Thank goodness I got up and have order emails sent to myself or I'd probably wouldn't have noticed.  This is ridiculous that this is happening to so many people.  I've been a solid iTunes user for a long time and this has never been an issue!!

  • by squirrelflyer,

    squirrelflyer squirrelflyer Mar 10, 2012 4:03 PM in response to stereocourier
    Level 1 (0 points)
    Mar 10, 2012 4:03 PM in response to stereocourier

    Happened to me too. Woke up this morning to find some Asian app installed on my phone without my authorization and immediately remembered reading about peoples itunes accounts getting hacked. Lo and behold I go and see that I had $17 dollars in store credit wiped from my account. Apple really needs to get a grip on this because it doesn't look like it's slowing down.

  • by diy_boy,

    diy_boy diy_boy Mar 10, 2012 5:50 PM in response to stereocourier
    Level 1 (0 points)
    Mar 10, 2012 5:50 PM in response to stereocourier

    iTunes account hacked.

     

    Dear all,

     

    I have had my account hacked.  All US$ hacked by apps I did not even download(I SWEAR).  I wrote to apple but no reply.  I believe Apple is fair and will investigate how our hard earned money we trust in itunes disappeared.

     

    My receipt no is  112029661185 where $35.96 gone to some app purchase

    Also receipt no 114030423517 where $99.99 gone to some app purchase.

     

    All done by In-app purchase by a seller boyaa Interactive International Limited.

     

    I believe that Apple should know what is the situation better and give us a reply..

     

    I dare not buy anything from Itunes store any more until I get a official reply from Apple/itunes.

     

    HELP......JUSTICE ...... HELP.   Steve Jobs, I believe you will flip in your grave....

  • by Ericbrod10,

    Ericbrod10 Ericbrod10 Mar 11, 2012 6:43 PM in response to stereocourier
    Level 1 (0 points)
    Mar 11, 2012 6:43 PM in response to stereocourier

    My account was recently hacked and i lost $40 of store credit on some app that i have never even seen before. Can someone please help me.

  • by hannahb007,

    hannahb007 hannahb007 Mar 12, 2012 7:58 AM in response to stereocourier
    Level 1 (4 points)
    iPhone
    Mar 12, 2012 7:58 AM in response to stereocourier

    My account got hacked today for .63 cents. I'm thankful it was only that. My payment info was linked to my paypal so I just called them and they refunded it with no probelm and contacted apple. Contacting paypal was a lot easier than contacting apple!

  • by xForbiddenone,

    xForbiddenone xForbiddenone Mar 12, 2012 9:31 AM in response to stereocourier
    Level 1 (0 points)
    Mar 12, 2012 9:31 AM in response to stereocourier

    My account was also hacked, I mean this is complete crap. I never even got a receipt so I don't know how much I actually lost, I just got the email saying 宠物猎人 has made in app purchases from an unauthorized device,,, at least 20$ of credit is gone, How can apple let this happen?

first Previous Page 91 of 131 last Next