I'm facing a tough situation with my Apple ID. A couple of weeks ago, I received an email that my password and personal info (like my date of birth) were changed for an Apple ID account I didn't even know I had. This account has been dormant for over a decade! When I tried to reset my account, the security questions were in Chinese, suggesting the hacker might be based in China. Although I managed to reset my password via email and phone, and set up two-factor authentication (2FA), I recently got another email saying that 2FA was disabled, the security questions were reset again, and my account info changed yet again. Now I can reset my password but can't fully sign into my Apple ID on my devices due to needing a Chinese phone number. When I tried to recover it online, the security questions appeared in Chinese. I contacted Apple support, but they could only disable my account at my request. I've noticed there were unknown AirTag devices associated with my Apple ID that I don't own. I'm wondering what measures I could have taken to prevent this and whether I should be concerned about any other devices being compromised. How could they hack my account again after enabling 2FA? I didn't see any 2FA requests either!
2 Answers
Where did you reset your Apple ID? It’s important to do it from a trusted device or browser. If you did it on your Macbook each time, that’s good, but always double-check the environment you’re using to make any changes.
It sounds frustrating! When you enabled 2FA, you might have missed checking for unknown devices linked to your account. Apple has a support page that can help with that: https://support.apple.com/en-us/102560.
I really thought there weren't any other devices logged in except my Macbook when I first accessed the account. But thanks for the reminder!

Yeah, I used my Macbook for both resets. Just trying to make sure everything was secure.