<?xml version="1.0" encoding="UTF-8"?><?xml-stylesheet type="text/css" media="screen" href="http://s2.wp.com/wp-content/themes/vip/newyorkobserver/stylesheets/rss.css"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Betabeat &#187; Hackers Have Been Secretly Filching Money From iTunes Accounts For Years</title>
	<atom:link href="http://betabeat.com/2012/02/hackers-itunes-apple-giftcards-refunds-02102012/feed/" rel="self" type="application/rss+xml" />
	<link>http://betabeat.com</link>
	<description>Just another WordPress.com site</description>
	<lastBuildDate>Tue, 21 May 2013 21:23:49 +0000</lastBuildDate>
	<language></language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='betabeat.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Betabeat &#187; Hackers Have Been Secretly Filching Money From iTunes Accounts For Years</title>
		<link>http://betabeat.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://betabeat.com/osd.xml" title="Betabeat" />
	<atom:link rel='hub' href='http://betabeat.com/?pushpress=hub'/>
		<item>
				
		<title>Hackers Have Been Secretly Filching Money From iTunes Accounts For Years</title>

		<comments>http://betabeat.com/2012/02/hackers-itunes-apple-giftcards-refunds-02102012/#comments</comments>
		<pubDate>Fri, 10 Feb 2012 09:29:35 -0400</pubDate>
					<link>http://betabeat.com/2012/02/hackers-itunes-apple-giftcards-refunds-02102012/</link>
			<dc:creator>Nitasha Tiku</dc:creator>
				
		<guid isPermaLink="false">http://www.betabeat.com/?p=29051</guid>
		<description><![CDATA[<p><img class="aligncenter size-full wp-image-29056" title="apple-itunes-hacker-gift-card" src="http://nyobetabeat.files.wordpress.com/2012/02/screen-shot-2012-02-10-at-9-29-59-am-e1328884274110.png" alt="" width="600" height="346" /></p>
<p><a href="http://www.theglobalmail.org/feature/hacking-worm-holes-in-itunes/31/">The Global Mail,</a> a non-profit news site, had a big break this week: a feature about wormholes in iTunes that have let hackers abuse accounts as far back as 2010. In a typical scenario, an account is accessed without permission, any remaining gift card credit is used to buy apps and the user's personal information, such as a PayPal account, is abused or altered.</p>
<p>"Those holding iTunes gift cards appear to be the most vulnerable. Once  the theft had occurred, forum users say the solutions provided by Apple  aren't up to scratch," said <a href="http://www.theglobalmail.org/feature/hacking-worm-holes-in-itunes/31/">the Global Mail</a>, noting than more than 1,000 instances have been reported on Apple forums.</p>
<p>Although the theft tends to range from just a couple dollars up to $500, the more troubling aspect is Apple's lack of transparency about the problem. Apple appears to be taking the stance of issuing refunds, but (<a href="http://reviews.cnet.com/8301-19512_7-57374384-233/itunes-customers-reportedly-under-threat-from-digital-thieves/?part=rss&amp;tag=feed&amp;subj=News-Apple">as is company protocol</a>) not acknowledging the possibility of a systemic problem until they have a solution.<!--more--></p>
<p>Ty Miller, chief technology officer at Pure Hacking, an IT security firm in Sydney, told the <a href="http://www.theglobalmail.org/feature/hacking-worm-holes-in-itunes/31/">Global Mail</a> that the hacking may be related to gift cards rather than iTunes accounts:</p>
<blockquote><p>Still, gift card credit is what most forum users are reporting having  lost, and Miller says the frequency of that complaint indicates that  hackers may be using software that can generate valid gift card number  for use in the iTunes store.</p>
<p>"There's free software out there that lets you generate iTunes gift  card numbers and you can actually use them in the iTunes store and buy  stuff, so it may not be that the actual accounts are being hacked, it  can just be the gift card numbers being used," Miller says.</p></blockquote>
<p>Why would hackers be using iTunes anyways? Can't they figure out an easier way to watch that Real Housewives Reunion special? Perhaps the story of Vietnamese developer Thuat Nguyen offers a clue. In 2010, he hacked about 400 iTunes accounts to boost sales of his own apps. As the site notes, "But those hacked believe there is a pattern. And it's true the  similarities of their stories, the recurrence of purchases of the same  apps, and         identical amendments to some customers' account  information all suggest a coordinated effort." Mr. Nguyen, is that you?</p>
]]></description>
		<content:encoded><![CDATA[<p><img class="aligncenter size-full wp-image-29056" title="apple-itunes-hacker-gift-card" src="http://nyobetabeat.files.wordpress.com/2012/02/screen-shot-2012-02-10-at-9-29-59-am-e1328884274110.png" alt="" width="600" height="346" /></p>
<p><a href="http://www.theglobalmail.org/feature/hacking-worm-holes-in-itunes/31/">The Global Mail,</a> a non-profit news site, had a big break this week: a feature about wormholes in iTunes that have let hackers abuse accounts as far back as 2010. In a typical scenario, an account is accessed without permission, any remaining gift card credit is used to buy apps and the user's personal information, such as a PayPal account, is abused or altered.</p>
<p>"Those holding iTunes gift cards appear to be the most vulnerable. Once  the theft had occurred, forum users say the solutions provided by Apple  aren't up to scratch," said <a href="http://www.theglobalmail.org/feature/hacking-worm-holes-in-itunes/31/">the Global Mail</a>, noting than more than 1,000 instances have been reported on Apple forums.</p>
<p>Although the theft tends to range from just a couple dollars up to $500, the more troubling aspect is Apple's lack of transparency about the problem. Apple appears to be taking the stance of issuing refunds, but (<a href="http://reviews.cnet.com/8301-19512_7-57374384-233/itunes-customers-reportedly-under-threat-from-digital-thieves/?part=rss&amp;tag=feed&amp;subj=News-Apple">as is company protocol</a>) not acknowledging the possibility of a systemic problem until they have a solution.<!--more--></p>
<p>Ty Miller, chief technology officer at Pure Hacking, an IT security firm in Sydney, told the <a href="http://www.theglobalmail.org/feature/hacking-worm-holes-in-itunes/31/">Global Mail</a> that the hacking may be related to gift cards rather than iTunes accounts:</p>
<blockquote><p>Still, gift card credit is what most forum users are reporting having  lost, and Miller says the frequency of that complaint indicates that  hackers may be using software that can generate valid gift card number  for use in the iTunes store.</p>
<p>"There's free software out there that lets you generate iTunes gift  card numbers and you can actually use them in the iTunes store and buy  stuff, so it may not be that the actual accounts are being hacked, it  can just be the gift card numbers being used," Miller says.</p></blockquote>
<p>Why would hackers be using iTunes anyways? Can't they figure out an easier way to watch that Real Housewives Reunion special? Perhaps the story of Vietnamese developer Thuat Nguyen offers a clue. In 2010, he hacked about 400 iTunes accounts to boost sales of his own apps. As the site notes, "But those hacked believe there is a pattern. And it's true the  similarities of their stories, the recurrence of purchases of the same  apps, and         identical amendments to some customers' account  information all suggest a coordinated effort." Mr. Nguyen, is that you?</p>
]]></content:encoded>
		<wfw:commentRss>http://betabeat.com/2012/02/hackers-itunes-apple-giftcards-refunds-02102012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://2.gravatar.com/avatar/becf95fa833b8aeb13f7720732bd6dc6?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">jhanasobserver</media:title>
		</media:content>

		<media:content url="http://nyobetabeat.files.wordpress.com/2012/02/screen-shot-2012-02-10-at-9-29-59-am-e1328884274110.png" medium="image">
			<media:title type="html">apple-itunes-hacker-gift-card</media:title>
		</media:content>
	</item>
	</channel>
</rss>
