facebook

Discuss the many weaknesses of browser security and ways to mitigate the threat

facebook

Post by bob2611 on Fri Sep 05, 2008 10:49 am
([msg=10919]see facebook[/msg])

Hi Everyone

I am pretty new to hacking but found the interest in a peculiar way. My facebook account and group was recently hacked. They managed to get in and send abusive emails from my account to all my members and remove me as admin from my own group.

I have been careful with my PC and have up to date AV (I appreciate this is no guarantee) and am cautious of phishing emails. Anyhow, I cannot find anything on the net that actually explains exactly how they did it. I'm trying to work out if somone is targeting me (which I think is the case) or if this was a random hack.

Can anyone shed any light on this. How does someone get to my machine and get the password. Facebook will not let me back on so I have to gather my 1000 contacts again as a new user. I don't want to go through this again.

Any help is appreciated

Cheers
bob
bob2611
New User
New User
 
Posts: 1
Joined: Fri Sep 05, 2008 10:40 am
Blog: View Blog (0)


Re: facebook

Post by Nines on Fri Sep 05, 2008 11:26 am
([msg=10920]see Re: facebook[/msg])

They probably "info'd" your account by guessing your secret question / date of birth or what ever.. If they still even do that. Other ways would be using a password cracker on your facebook account, which would probably crack your password if it was easily guessed, ie. on a wordlist. Alternatively you could've been keylogged, or someone's seen you type your password in.

This is probably the way they've gotten into your account.

Also, if you've used the same password on another service that you use, then they could have obtained that password and tried it on your facebook account.
User avatar
Nines
Poster
Poster
 
Posts: 191
Joined: Sun Apr 13, 2008 5:57 pm
Blog: View Blog (0)


Re: facebook

Post by SatansBrother on Sun Sep 14, 2008 4:37 am
([msg=11671]see Re: facebook[/msg])

You where probably just a sacrifice account for spamming. Yea facebook has a no recovery policy. Do not put your hopes in your AV, even the simplest kits can write code to avoid detection. Get a good firewall, proxy yourself, stay patched,and dont download files from p2ps. About facebook make sure you use the standard good password protocol at least 8 chars one uppercase and a num. Can reallyu do much else cause its facebooks resposibility.
SatansBrother
New User
New User
 
Posts: 19
Joined: Fri Sep 12, 2008 4:42 am
Blog: View Blog (0)


Re: facebook

Post by nosidius on Sun Sep 14, 2008 9:34 am
([msg=11705]see Re: facebook[/msg])

throw a hissy fit........ thats always the best thing to do!

and look around, i know we've had discussions on the best combinations for safety.......... (i.e. Spybot S&D, is our agreed upon favorite AV, and then we all branch on which firewalls we sue, but i have COMODO which doubles are firewall, and script checker........ blocks all actions until you approve them, annoying but useful)
give me knowledge or give me death
User avatar
nosidius
Poster
Poster
 
Posts: 177
Joined: Fri Aug 08, 2008 1:40 pm
Blog: View Blog (0)


Re: facebook

Post by Dwere13 on Sun Sep 21, 2008 2:58 am
([msg=12148]see Re: facebook[/msg])

My bet would be you have a personal enemy in real life who knows you well enough to have guessed your secret question.
Next bet would be password cracker.

If you're cautious enough, you probably don't have any COMPUTER SECURITY issues to be worried about, given you stay on top of spyware as well as viruses, but you may want to try using a more secure password.

Someone suggested not using p2p things, I assume they mean peer to peer, such as Limewire. In my opinion, that suggestion is lame. Peer to peer, while use of it comes with some risk, as long as you scan everything you download with an antivirus, and don't download things that are OBVIOUSLY corrupt, i.e. *Search: Insert music group* *Results rendered: Track 1.mp3, track 2.mp3 track 2.exe* don't download track 2.exe. Common sense really.
Dwere13
Experienced User
Experienced User
 
Posts: 68
Joined: Sun Sep 21, 2008 1:59 am
Location: BC
Blog: View Blog (0)



Return to Web

Who is online

Users browsing this forum: No registered users and 0 guests