Given that payment for apps and books isn't made instantly (it's a monthly payment by Apple to the developer/author), if there really have been fraudulent purchases made, all that's going to happen is that the money will be refunded - the hacker is extremely unlikely to actually get anything. Just goes to prove the old rule - never, EVER, use a password that's vulnerable to a dictionary attack.
|