Feeds

For sale: 50,000 compromised iTunes accounts

Music and movies for pennies on the dollar

Protecting against web application threats using SSL

Users of a Chinese auction site are brazenly selling access to compromised iTunes accounts that offer downloads of movies and music for pennies on the dollar.

According to China's Global Times, about 50,000 pillaged iTunes accounts were up for sale on Taobao.com for as little as $5. Access to thousands of accounts has already been sold, the publication said.

Many of the offers recommend buyers use the accounts in the 12 hours immediately after the sale, presumably because the legitimate owners will catch wind of the compromise once purchases are charged to their credit cards. They also contain disclaimers from Taobao stating that the website, China's answer to eBay, isn't responsible for the items sold and can't vouch for their authenticity. In a statement sent to AFP, the online auctioneer said it wouldn't crack down on the sales until it received a formal request to do so.

It's not the first time accounts belonging to Apple users have been targeted. In July, Cupertino revamped security measures on the online store and urged users who suspected fraud to change their passwords and contact their financial institution. In 2008, several hundred MobileMe users were snared in a phishing scam that siphoned names, addresses, birth dates, email addresses and credit card numbers and sold them in underground identity theft markets.

Apple issued a statement to ITWorld that said the company is “always working to enhance account security” but outlined no action taken so far against the iTunes pillagers. ®

Reducing the cost and complexity of web vulnerability management

More from The Register

next story
Infosec geniuses hack a Canon PRINTER and install DOOM
Internet of Stuff securo-cockups strike yet again
'Speargun' program is fantasy, says cable operator
We just might notice if you cut our cables
Apple Pay is a tidy payday for Apple with 0.15% cut, sources say
Cupertino slurps 15 cents from every $100 purchase
Israeli spies rebel over mass-snooping on innocent Palestinians
'Disciplinary treatment will be sharp and clear' vow spy-chiefs
YouTube, Amazon and Yahoo! caught in malvertising mess
Cisco says 'Kyle and Stan' attack is spreading through compromised ad networks
Hackers pop Brazil newspaper to root home routers
Step One: try default passwords. Step Two: Repeat Step One until success
Greater dev access to iOS 8 will put us AT RISK from HACKERS
Knocking holes in Apple's walled garden could backfire, says securo-chap
Microsoft to patch ASP.NET mess even if you don't
We know what's good for you, because we made the mess says Redmond
prev story

Whitepapers

Providing a secure and efficient Helpdesk
A single remote control platform for user support is be key to providing an efficient helpdesk. Retain full control over the way in which screen and keystroke data is transmitted.
WIN a very cool portable ZX Spectrum
Win a one-off portable Spectrum built by legendary hardware hacker Ben Heck
Storage capacity and performance optimization at Mizuno USA
Mizuno USA turn to Tegile storage technology to solve both their SAN and backup issues.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Security and trust: The backbone of doing business over the internet
Explores the current state of website security and the contributions Symantec is making to help organizations protect critical data and build trust with customers.