Nonstopdrivel
13 years ago

Hacked iTunes accounts sold online
 
Source: Global Times [08:08 January 06 2011]

UserPostedImage

About 50,000 illegal accounts are being sold at taobao.com, China's largest online store, at prices ranging from 1 yuan to 200 yuan. Photo: Google

By Zou Le

For merely 200 yuan ($30) a pop, an Internet user in China can purchase up to $200 worth of digital products at Apple Inc's vast music, movie and applications vault.

Far from being a benevolent offer by the fruit-favoring giant, this offer is the result of the theft of iTunes user account details stollen by hackers who then auctioned them online.

The Global Times discovered Wednesday that about 50,000 illegal accounts are being sold at taobao.com, China's largest online store, at prices ranging from 1 yuan to 200 yuan.

Potential buyers are promised access to music and movies through iTunes amounting to seven times more than the amount paid.

The only restriction is that all downloads should be made within 24 hours of the transaction being completed at Taobao.

The websites show that thousands of such accounts have been sold over the past several months.

"Of course these accounts are hacked, otherwise how could they be so cheap?" a customer service representative of one of the online stores admitted to the Global Times.

He assured that the hacked accounts were safe to use due to the legitimate holders being located abroad, but he warned that the accounts needed to be used as quickly as possible. He refused to comment on the methods used to obtain the accounts.

A Global Times reporter wired $5 to a seller through Taobao's online payment system, who then provided a username and password to iTunes.

Upon accessing the account, the credit card details of a user appeared in the payment information section with a billing address in the US.

Xu Yuanzhi, a Chongqing-based IT expert who has been following the case, told the Global Times that hackers either directly hack iTunes accounts owned by foreign users or steal the details of overseas credit cards, which are then used to register several iTunes accounts for purchases.

"A 24-hour limit is out of concern that the legitimate user will discover his account being violated and cancel his card within this period," Xu said.

Apple's iTunes has become the world's biggest music retailer, with revenue at $1.3 billion in the quarter ended March 27, according to official figures.

Apple CEO Steve Jobs said in June that iTunes has more than 150 million customers' credit card numbers on file.

On Apple's homepage's Support section, hundreds of users have posted stories about hacked accounts, dating back to September.

"I never used my iTunes account ... but somehow my credit card was charged with $300," wrote "Mawsandra."

In response to the "black accounts," a customer representative at Apple China told the Global Times that the company is offering only technical support and suggested that users "better safeguard their account information."

Apple enhanced the security for iTunes in July by requiring more frequent entries of credit card security codes when making purchases, but some say the company should do more.

"Apple can easily detect any fraud were they willing to do so," Xu said, explaining that Apple is technically capable of monitoring the suspicious transactions and blocking the accounts immediately. "But they are reluctant, as doing so would affect their business."

Jin Fei, a Beijing-based Internet security expert, called the practice "organized crime."

According to Jin, there are five trojan virus production-and-distribution groups in China, with more than 300,000 people engaged in developing and selling the virus used to secure the account information.

Cai Haining, deputy director of the Committee for Information Network and High-Tech with the Lawyers' Association of China, told the Global Times that Taobao should shoulder joint responsibility for its failure to supervise the legitimacy of products being sold on its website.

"It should require sellers to stop selling products if they are found to be illegal, or it should take the blame," Cai said.

Song Shengxia and Zhu Shanshan contributed to this story



UserPostedImage
Zero2Cool
13 years ago
When I was playing with my iPhone something requested I enter a credit card number. Oh, the App Store. I just wanted to download some games for my inactive iPhone, but I refuse to give my card information so .. no go.


Sounds like I may have made the right decision.
UserPostedImage
Nonstopdrivel
13 years ago

Hacked ITunes Accounts Continue to Sell in China
 
The sale of iTunes accounts that have reportedly been hacked has yet to be stopped by Apple or the Chinese e-commerce site hosting the sellers.

By Michael Kan
Fri, January 07, 2011

IDG News Service — The sale of iTunes accounts that have reportedly been hacked has yet to be stopped by Apple (AAPL) or the Chinese e-commerce site hosting the sellers.

Merchants on the Chinese retail site Taobao.com have been selling iTunes and Apple App Store accounts filled with US dollars for bargain prices. Some services allow the purchase of US$100 worth of products on iTunes for merely 55 yuan ($8.30).

But the Chinese media has reported that hackers obtained thousands of the accounts sold on the site.

The merchants themselves, however, have not said where the accounts have come from. One merchant only said that "maybe" the accounts had been obtained from hackers, but added that the services were legal to buy because the accounts originated from the U.S. Another merchant could not identify where the accounts had come from.

The accounts sold online often state that buyers should make their purchases within 12 hours. This is likely made in order to prevent the real users of the account from noticing the unauthorized transactions and cancelling their credit card information.

How the users stole the account information, however, is still unclear, said Zhao Wei, CEO of Chinese security company Knownsec. Hackers may have originally tried to obtain these accounts by stealing the information on iTunes gift cards. But now they could be developing methods to steal user account information from computers and iPhones, he said.

Apple did not specifically address the problem of hacked iTunes accounts. "We're always working to enhance account security for iTunes users," it said in a statement, adding that users should change their iTunes password immediately upon finding unauthorized purchases.

Taobao has also taken no action. The company said it has received no information from Apple on the accounts, and that no valid takedown request has been received.

Users in the U.S. have complained about scams with iTunes accounts since 2009. In some cases, scammers likely obtained the accounts by sending out fake e-mail messages purporting to be from Apple to trick users into giving up their usernames and passwords.

The stolen iTunes accounts are all the more attractive in China because many consumers there have no way to create legitimate accounts of their own. The Chinese iTunes store only accepts payment by credit card, something many Chinese consumers do not have.

(Robert McMillan contributed to this story.)


UserPostedImage
Pack93z
13 years ago
More proof that Apple's backend code and security measures aren't infallible either.. an illusion that has been oversold IMO.
"The oranges are dry; the apples are mealy; and the papayas... I don't know what's going on with the papayas!"
Nonstopdrivel
13 years ago

Sounds like I may have made the right decision.

Originally Posted by: Zero2Cool 


I think so. A lot of people are reporting that their accounts got hacked after their iPhones asked them for their iTunes account information. It would seem that rogue apps are contributing to the problem, though other people swear they have had no such issues.

My training partner here in Germany had his account hacked to the tune of over $180. His bank refused to refund the charges. It seems he is out the money.
UserPostedImage
Fan Shout
Zero2Cool (1h) : Good deal too
Martha Careful (2h) : Maxx Crosby resigned by Raiders
Zero2Cool (11h) : Chargers release Joey Bosa
Zero2Cool (4-Mar) : Appears Jets released Adams. It'll be official in few hours.
Zero2Cool (3-Mar) : We have re-signed LB Isaiah McDuffie
Zero2Cool (2-Mar) : Jets taking calls for Davante Adams. That $38m cap number hurting lol
Zero2Cool (2-Mar) : Guess it's not official until the 12th
Zero2Cool (2-Mar) : Deebo went for a 5th to Commanders?
Martha Careful (1-Mar) : Just like my late husband!!
Zero2Cool (1-Mar) : Once fired up, it should be good
Zero2Cool (1-Mar) : Sometimes, the first page load will be slow. it's firing up the site.
Martha Careful (1-Mar) : The site is operating much faster...tyvm
Mucky Tundra (28-Feb) : It's the offseason and the draft is still nearly 2 months away, what can ya do?🤷‍♂️
Zero2Cool (27-Feb) : NFL teams were notified today that the 2025 salary cap has been set at $279,200,000 per club.
Zero2Cool (27-Feb) : sssllllooooow
Martha Careful (27-Feb) : is it just me, or has the website been slow the last couple of days?
buckeyepackfan (26-Feb) : Damnit 2026 2nd rnd pick!
buckeyepackfan (26-Feb) : Packers get Myles Garret and Browns 2926 2nd rnd pick.
buckeyepackfan (26-Feb) : Browns get Jaire, + Packers #1 2025 pick and 2026 3rd rnd pick.
beast (26-Feb) : Rams trying to trade Stafford and Kupp, then signing Rodgers and Adams? Just speculation, but interesting
Zero2Cool (26-Feb) : Packers shopping Jaire Alexander per Ian Rapoport
Zero2Cool (25-Feb) : Gutekunst and Jaire Alexander’s agent, John Thornton, are meeting this week in Indianapolis to determine the future of the Packers’ 28-year-
Zero2Cool (25-Feb) : Gutekunst says Mark Murphy told him he can trade their first-round pick despite the draft being in Green Bay.
Zero2Cool (24-Feb) : Packers. 🤦
Zero2Cool (24-Feb) : One team.
Zero2Cool (24-Feb) : One team petition NFL to ban Brotherly Shove.
beast (23-Feb) : Seems like he was just pissed because he was no longer the starter
beast (23-Feb) : Campbell is right, he's rich and he doesn't have to explain sh!t... but that attitude gives teams reasons to never sign him again.
dfosterf (22-Feb) : I have some doubt about all that
dfosterf (22-Feb) : I read De'Vondre Campbell's tweet this morning (via the New York Post) Florio says that if he invested his earnings wisely, he will be good
beast (20-Feb) : I haven't followed, but I believe he's good when healthy, just hasn't been able to stay healthy.
dfosterf (20-Feb) : Hasn"t Bosa missed more games than he has played in the last 3 years?
Mucky Tundra (19-Feb) : He hasn't been too bad when healthy but I don't feel like I ever heard much about when he is
Zero2Cool (19-Feb) : Felt like he was more interested in his body, than football. He flashed more than I expected
Zero2Cool (19-Feb) : When he was coming out, I thought he'd be flash in pan.
Mucky Tundra (19-Feb) : Joey seems so forgettable compared to his brother for some reason
Zero2Cool (19-Feb) : NFL informed teams today that the 2025 salary cap will be roughly $277.5M-$281.5M
Zero2Cool (19-Feb) : Los Angeles Chargers are likely to release DE Joey Bosa this off-season as a cap casualty, per league source.
Zero2Cool (18-Feb) : If the exploit is not fixed, we'll see tons of "50 top free agents, 50 perfect NFL team fits: We picked where each should sign in March" lo
Zero2Cool (18-Feb) : Issue should be solved, database cleaned and held strong working / meeting. Boom!
Zero2Cool (18-Feb) : It should be halted now.
Mucky Tundra (18-Feb) : usually spambots are trying to get traffic to shady websites filled with spyware; the two links being spammed were to the Packers website
Mucky Tundra (18-Feb) : you know when you put it that way combined with the links it was spamming (to the official Packers website)
Zero2Cool (18-Feb) : Yep. You can do that with holding down ENTER on a command in Console of browser
Mucky Tundra (18-Feb) : even with the rapid fire posts?
Zero2Cool (18-Feb) : I'm not certain it's a bot.
Mucky Tundra (18-Feb) : I've got to go to work soon which is a pity because I'm enthralled by this battle between the bot and Zero
Zero2Cool (18-Feb) : Yeah, I see what that did. Kind of funny.
Mucky Tundra (18-Feb) : now it's a link to Wes Hodkiezwicz mailbag
Mucky Tundra (18-Feb) : Now they're back with another topic
Please sign in to use Fan Shout
2024 Packers Schedule
Friday, Sep 6 @ 7:15 PM
Eagles
Sunday, Sep 15 @ 12:00 PM
COLTS
Sunday, Sep 22 @ 12:00 PM
Titans
Sunday, Sep 29 @ 12:00 PM
VIKINGS
Sunday, Oct 6 @ 3:25 PM
Rams
Sunday, Oct 13 @ 12:00 PM
CARDINALS
Sunday, Oct 20 @ 12:00 PM
TEXANS
Sunday, Oct 27 @ 12:00 PM
Jaguars
Sunday, Nov 3 @ 3:25 PM
LIONS
Sunday, Nov 17 @ 12:00 PM
Bears
Sunday, Nov 24 @ 3:25 PM
49ERS
Thursday, Nov 28 @ 7:20 PM
DOLPHINS
Thursday, Dec 5 @ 7:15 PM
Lions
Sunday, Dec 15 @ 7:20 PM
Seahawks
Monday, Dec 23 @ 7:15 PM
SAINTS
Sunday, Dec 29 @ 3:25 PM
Vikings
Sunday, Jan 5 @ 12:00 PM
BEARS
Sunday, Jan 12 @ 3:30 PM
Eagles
Recent Topics
2h / Green Bay Packers Talk / Martha Careful

10h / Green Bay Packers Talk / bboystyle

5-Mar / Green Bay Packers Talk / dfosterf

4-Mar / Green Bay Packers Talk / wpr

4-Mar / Random Babble / Martha Careful

4-Mar / Random Babble / Martha Careful

3-Mar / Green Bay Packers Talk / Zero2Cool

3-Mar / Green Bay Packers Talk / dfosterf

2-Mar / Green Bay Packers Talk / Zero2Cool

1-Mar / Green Bay Packers Talk / buckeyepackfan

1-Mar / Green Bay Packers Talk / wpr

1-Mar / Green Bay Packers Talk / dfosterf

28-Feb / Green Bay Packers Talk / Zero2Cool

28-Feb / Around The NFL / Martha Careful

27-Feb / Green Bay Packers Talk / Zero2Cool

Headlines
Copyright © 2006 - 2025 PackersHome.com™. All Rights Reserved.