Did someone hack my iTunes account?!?
So I get an e-mail from iTunes today stating that an episode for my new season pass for “Sophie” has arrived. The first thing I thought was that I accidentally clicked “buy season” when I downloaded the free pilot last week. But when I check the receipt I see six other items (in addition to the season pass) totaling $61.93! Not only that, I see another order for $5.97! Not a chance that I placed these orders (FYI, the orders were placed at 1 am and 5 am).
Here’s the really strange part:Almost all of the purchase was videos (tv, movies, movie rentals) and I think those kinds of videos still have DRM in them and no additional computers were authorized. What good are these to anyone if they didn’t authorize a computer? Can they even play them? Wouldn’t it have been easier to have just downloaded torrents of these files? These oddities make me think it’s an accounting error.
So I had to “report a problem” to Apple/iTunes for each of the 10 individual items. The e-mails went something like this:
I did not place this order for any of the 3 items on this order. Nor has my computer downloaded these items. It’s order XXXXXXXX I also have another order from today (ZZZZZZZZ) that I did not place.
I’ve changed my password as a precaution. I also tried to play some older protected/DRM’d music and it still plays (so I’m guessing if someone hijacked something they didn’t deauthorize my computers).
Gary LaPointe (phone ###-###-#####)
PS – These purchases don’t even meet my normal purchasing patterns.
My responses appear to be identical other than contact info (and I only got one response for each of the two orders):
My name is Jane Doe with the iTunes Store. I’m so sorry to hear of the unauthorized charges made with your iTunes Store account. I can certainly appreciate your concerns, and will do everything I can to assist in having this resolved.
With regards to financial reimbursement for the charges in question, these would have to be removed by a specialized team, designated to handle requests of this nature. I would urge you to contact your credit card company as soon as possible to inquire about canceling the card and removing the unauthorized transactions. A member of your credit card’s fraud department will contact the iTunes Store directly, and this team will resolve the issue. I apologize that I’m unable to remove the charges myself, but all unauthorized transactions must be handled in this manner.
If you suspect you are the victim of identity theft, please consider following these recommendations:
(they then gave 14 lines of tips that I cut out)
I sincerely hope that you are able to resolve this matter with the help of your credit card company, as soon as possible, Gary. Please let me know if I can be of any further assistance.
iTunes Customer Store Support
Please note that I work, Sunday, Wednesday, Thursday, Friday and Saturday, 12:30 PM – 9:00 PM this week
The identity theft issues don’t even make sense. Why would someone steal my charge card number and log into my iTunes account? The CC number won’t even get them into my account and if they had a CC number, they could just create their own new account and I wouldn’t have know about it for days. And Apple doesn’t display the account number. I’m thinking, it’s an accounting or some bits on the web got mixed up. And the responses were generic enough where I’m not 100% sure they read the post.
I did notice they they did include their working schedule, which was even evdifferent for the two different people who responded (neither of whom were named “Jane”), it’s a nice touch but they both had the same return address (although the “follow-up” code could possibly redirect it).
I responded with:
I will have my charge card company dispute/remove the charges as you said to do below. I have changed my password.
I have four (4) questions below in bold.
Unless I’m mistaken, they only gained access to my iTunes account. They don’t have my charge card number, iTunes doesn’t display the number for them to see, correct? A charge card number will not get them into my iTunes account. If they actually have my charge card number, I’d think they’d charge more than $70 of music/videos and
So this is either someone guessed my password (which was letters, numbers and non-alphanumeric characters) or some data packets got mixed up as someone else was placing their order. Since I have the two authorized computers in my possession and I know no one else was here using them, I’m assuming the latter.
Can someone actually download songs/videos to a non-authorized computer if they guessed my password?
Since videos still have DRM, someone wouldn’t actually be able to play them, correct?
Someone at the iTunes Customer Store Support can’t actually intervene in some way, at least to stop someone from downloading the season pass?
If it’s just an accounting error, it’s still going to download the season pass to my computer the next time I purchase a song.
Without my new password I’m assuming someone cannot download more of the season pass. I don’t even see how they could have in the first place without authorizing a computer.
And I can’t even dispute these charges yet since they haven’t fully been charge to my credit card company yet.
If anyone from iTunes/Apple is reading this and wants to fix this. You can leave a comment below or contact me directly.
Wow! Lots of people with similar problems these last few weeks (see comments below), but I’m the only one that didn’t seem to have gift cards purchased on my account.
So it looks like my charge card is refunding the two dollar amounts to my charge card. This is contingent to Apple not disagreeing with my claim. FYI, after I said it was kind of stupid that they weren’t going to cancel the season pass since I was disputing it and they were still delivering the shows, Apple did contact me to say they would refund the rest of the season pass (right around the same time).
PS – It appears the Apple does not allow you to cancel a season pass! This is insane, it’s to their benefit to get you to subscribe, the fact that you can’t cancel is a non-motivator. Obviously if it was a discounted season pass and you canceled it, you’d pay the full price for episodes already received. Just seems like an obvious solution.
I still don’t understand what they are doing with these iTunes protected movies/shows if they can’t play them? Why not just download torrents off the ‘net if they are going to steal?
MY UPDATE: I got Apple to cancel the season pass and I did get my money refunded from my credit card company. It was confusing the way it cam through, I might have actually gotten credited from the rest of the season too (so I might have come out ahead, but after all the e-mails/contacting, I’m sure I ended up way behind).
A news station is doing a story on this and was looking for some people in the Boston area. If you are interested in being contacted please state so in your comment. I’ll pass your e-mail on to them. If you put your phone number, I’ll pass that on too, but I’ll delete it from the comment (if you’ve never commented before your comment should not appear until I approve it). Sadly I never heard any more details about the Boston story after forwarding details to them…