stereocourier

Q: iTunes store account hacked

I'm posting this just to share my story and get reactions. It's a little detailed but I thought worth sharing.

On November 23, 2010 I purchased a single song from the iTunes store for .99. I used store credit that I had from a gift card I received last year. It was the first purchase I had made since July 2010.

On November 25, 2010 I received a receipt for 2 more separate orders to my account. These were for over $50 in iPhones apps. Here's a sampling of some of the purchases:

1 eREAD isoshu, v1.5, Seller: ChengDu YueTong Internet Information Co. Ltd (17+)
2 Plants vs. Zombies, v1.3, Seller: PopCap Games, Inc. (iDP)
3 Monkey Island 2 Special Edition: LeChuck's Revenge, v1.1, Seller: Lucasfilm International Services Inc.
4 Asphalt 5, v1.2.6, Seller: Gameloft (9+)
5 Let's Golf!® 2, v1.0.1, Seller: Gameloft (4+)
6 Frames & FX for Photos, v2.5.1, Seller: Imikimi, LLC (12+)
7 Stenches: A Zombie Tale of Trenches, v1.0.1, Seller: Thunder Game Works (9+)

I do not have a credit card linked to my account, so these were made using my store credit.

I have only 1 computer authorized for my account (my personal home computer). I live alone and no one else touches my Powerbook but me. I also DO NOT own an iPhone, so I would have no interest in apps.

After I saw these bizarre purchases, I checked my account. I noticed 2 strange things: My account information had changed: My street address was correct, but city, state and zip had changed to: Towson, MD 21286-7840. I have never lived in Maryland. Also, I noticed that my password recovery answer had changed to "Murray" in response to a question about my mother's maiden name. That's decidedly NOT my mother's maiden name. Also, my birthdate had changed to an incorrect month and day.

I immediately changed my password and my recovery question/answer challenge.

I reported problems on all of these purchases and also contacted iTunes Account Support by e-mail.

Within 24 hours I received an e-mail from "Vicki" at iTunes Customer Support. She wrote:

"When reviewing over your account "name@domain.net" and the two reported orders, it shows that the content purchased within them was acquired from the computer that is currently authorized for your iTunes account. So I strongly advise that you do consult with those in your household regarding the purchases made, and the charges that resulted from those purchases."

Further:

"I have gone and reversed the charges for the two orders....You will see a store credit in three to five business days....Please note that this is a one-time exception, as the iTunes Store Terms and Conditions state that all sales are final."

I am pleased that Apple is refunding my store credit and replied so quickly.

However, it is simply impossible that these purchases were made from my computer. Again, my Powerbook is the only computer I have ever authorized to access my account, and I am the only person with access to it.

I am not sure how this happened. Any thoughts or similar experiences?

Powerbook G4, Mac OS X (10.5.8)

Posted on Nov 28, 2010 3:45 PM

Close

Q: iTunes store account hacked

  • All replies
  • Helpful answers

first Previous Page 55 of 131 last Next
  • by wendyfromsaint paul,

    wendyfromsaint paul wendyfromsaint paul Nov 7, 2011 9:35 AM in response to Worsy
    Level 1 (0 points)
    Nov 7, 2011 9:35 AM in response to Worsy

    I hope that they figure this out for me.  I would really like to buy some music.  They have my account frozen because they think I "OWE" them money for something that a hacker bought and has already been paid for with my itunes store credits and pay pal. UGH totally hating on apple right now!

  • by SimonJester753,

    SimonJester753 SimonJester753 Nov 7, 2011 10:17 AM in response to wendyfromsaint paul
    Level 1 (68 points)
    Desktops
    Nov 7, 2011 10:17 AM in response to wendyfromsaint paul

    I don't have an active iTunes account anymore.

     

    I'm rediscovering fleamarket CDs. $6 for an album. Load them into iTunes.

     

    Lucky for me I like old stuff.

  • by wendyfromsaint paul,

    wendyfromsaint paul wendyfromsaint paul Nov 7, 2011 11:28 AM in response to wendyfromsaint paul
    Level 1 (0 points)
    Nov 7, 2011 11:28 AM in response to wendyfromsaint paul

    Whoa! I got a person at Apple! Call this number and tell them that the email people aren't doing anything for you and that  you need help! 

     

    Apple

    1 Infinite Loop
    Cupertino, CA 95014
    408.996.1010

     

    I think they are going to fix it for me!  Will update, have him (and I mean a Him in the US) on the line now...

     

    The saga continues.

  • by wendyfromsaint paul,

    wendyfromsaint paul wendyfromsaint paul Nov 7, 2011 12:11 PM in response to wendyfromsaint paul
    Level 1 (0 points)
    Nov 7, 2011 12:11 PM in response to wendyfromsaint paul

    Low and behold they fixed it for me!  YAYAYAYA

  • by Zenobius,

    Zenobius Zenobius Nov 7, 2011 12:18 PM in response to wendyfromsaint paul
    Level 1 (0 points)
    Nov 7, 2011 12:18 PM in response to wendyfromsaint paul

    Actually the link you posted above is about the "lost" iPhone 4S prototype, and we knew this last week. (and knew it was probably coming a few months ago since this was the 2nd time it has happened)

     

    http://9to5mac.com/2011/11/03/exclusive-apple-vice-president-of-global-security- john-theriault-departs-company-following-lost-iphone-4s-investigation/

     

    has NOTHING to do with iTunes.

  • by wendyfromsaint paul,

    wendyfromsaint paul wendyfromsaint paul Nov 7, 2011 12:23 PM in response to Zenobius
    Level 1 (0 points)
    Nov 7, 2011 12:23 PM in response to Zenobius

    I totally know it has NOTHING to do with iTunes. I just thought it was funny and was giggling at my desk because it was associated with the "security" department @ Apple.  Still is funny to me.  Security in general is in disarray.

  • by Adam A. Lang,

    Adam A. Lang Adam A. Lang Nov 7, 2011 12:34 PM in response to wendyfromsaint paul
    Level 1 (135 points)
    Nov 7, 2011 12:34 PM in response to wendyfromsaint paul

    What I find funny is all the security experts on here yelling 'APPLE DO SOMETHING! YOUR SECURITY *****!'

     

    There is a concerted effort by a group of hackers in China (according to media reports) that are using trojans, viruses, and rootkits/keyloggers to steal people's accounts (just the username and password, generally) and then selling them online, in bulk. If someone else has your username and your password, then perhaps it shouldn't surprise anyone that Apple's security lets someone else log into your account.

     

    I don't know what the answer to the problem is, but, having done internet security as part of my job for a number of years (although, thank goodness, I am no longer in IT), I can tell you that there is no online company with access to credit cards that would be safe from this kind of concerted attack. The reason Apple is the target is, very simply, because they are big, and because their stuff is delivered electronically. But there isn't an easy answer, and the hard answers -- two-factor authentication, for example -- are extremely inconvenient. (Do you want to have to send a text message every time you buy something on the Apple store on your laptop? That would cut massively into their sales.)

  • by wendyfromsaint paul,

    wendyfromsaint paul wendyfromsaint paul Nov 7, 2011 12:41 PM in response to Adam A. Lang
    Level 1 (0 points)
    Nov 7, 2011 12:41 PM in response to Adam A. Lang

    ty for info!

  • by wendyfromsaint paul,

    wendyfromsaint paul wendyfromsaint paul Nov 7, 2011 12:43 PM in response to wendyfromsaint paul
    Level 1 (0 points)
    Nov 7, 2011 12:43 PM in response to wendyfromsaint paul
  • by wendyfromsaint paul,

    wendyfromsaint paul wendyfromsaint paul Nov 7, 2011 12:47 PM in response to wendyfromsaint paul
    Level 1 (0 points)
    Nov 7, 2011 12:47 PM in response to wendyfromsaint paul

    I prefer Macs.  I really do.  But this iTunes Store customer support HAS to be fixed.  How frustrating for those of us who were hacked.

  • by Carlo TD,

    Carlo TD Carlo TD Nov 7, 2011 1:09 PM in response to wendyfromsaint paul
    Level 3 (558 points)
    Nov 7, 2011 1:09 PM in response to wendyfromsaint paul

    Well did you do what I suggested before? Did you input your correct creditcard info into itunes? If so... sit and wait. Dont press the button "report a problem" as you said earlier 30+ times. If you have to change the password for your Apple ID. I think part of the problem is your impatient, and as a result this cheese has bigger holes. Do what I suggest; and also follow the advice of the person you were emailing from Apple. It will be all fine in the end. Just curious, did you upgrade to Lion and also did you set up your icloud account if you did upgrade to Lion?

  • by wendyfromsaint paul,

    wendyfromsaint paul wendyfromsaint paul Nov 7, 2011 1:20 PM in response to Carlo TD
    Level 1 (0 points)
    Nov 7, 2011 1:20 PM in response to Carlo TD

    @ Carlo.

     

    Today I ate the cheese. 

     

    Since we all like metaphors so much here .

     

    I made something happen with perseverance.

     

    I did not input the correct CC info in. The correct info was already in my account.

     

    I contacted apple corporate in CA.

     

    A SUPER AWESOME dude in Apple security/US helped me out. Cleared the account of it showing I owed the $32.12 AND gave me BACK my $30 in iTunes credits and an additional $2.13. 

     

    I would never follow the advice of a person who is 1) support not in the US    2) asks me to pay them AGAIN for something someone stole from me     3) follow the advice of a "form e-mail"    4) follow the advice of someone who doesn't understand what was going on

     

    I would like to take this small victory as proof that tenacity wins!

     

    APPLE:  0  WENDY:  1

     

    Actually Apple can have part of the win for the AWESOME guy in California who helped me today.  I bet he was a really cute nerd.

     

    If you make enough noise, someone will hear you.

     

    THIS GUY WAS THEE BEST CUSTOMER SUPPORT GUY EVER!

     

    Your support Advisor, ****, has a follow-up message for you:

     


    Hello Wendy,

    This is **** again and it was very nice meeting you over the phone today.  I can certainly appreciate your concern regarding this unauthorized activity.  I was sorry to hear that this fraud had occurred in the first place, but I'm very happy that I was able to clarify this matter for you, refund the fraudulent purchases, and waive the owed amount that was still on your account, and enable your account for usage again.

    The refund for $32.13 USD on order M1KHQB2D2M will process in the 3-5 business days in the form of store credit back to your iTunes Store Account "@gmail.com".

    Your case number should you ever need to reference it or if you need a follow up is:

    Case number: 260122105

    Once again, the pleasure was all mine and it makes my day knowing I was able too assist such a loyal and valued Apple customer as yourself.

    Please let me know if there is anything else I can do for you as I want to ensure that this matter has been resolved to your complete satisfaction.  It was my pleasure assisting you.  We appreciate you for being a loyal member of the iTunes Store and look forward to doing business with you in the future.

    I hope you have a great upcoming work week. 

    Best wishes,

    iTunes Store Account Security T2 Advisor
    Austin TX

  • by wendyfromsaint paul,

    wendyfromsaint paul wendyfromsaint paul Nov 7, 2011 1:23 PM in response to Carlo TD
    Level 1 (0 points)
    Nov 7, 2011 1:23 PM in response to Carlo TD

    @ Carlo

     

    Did not upgrade to Lion...

  • by Oonce Oonce,

    Oonce Oonce Oonce Oonce Nov 7, 2011 3:41 PM in response to wendyfromsaint paul
    Level 1 (0 points)
    Nov 7, 2011 3:41 PM in response to wendyfromsaint paul

    I bet the "cute tech support guy" knows all *about* what's going on and how many itunes accounts are getting hacked through no fault of the users.  Liar Liar black turtleneck and Levi's on fire. 

first Previous Page 55 of 131 last Next