The 101 To Basic Hacking: How To Hack Facebook and Other Websites
People often ask me the question “How can I hack someone’s account”. There are many reasons why people want to hack into someone else’s Facebook or Email accounts such as:
- They’ve been hacked by this person
- They hate this person and what to get revenge
- They want to spy and snoop on people
- They want to delete an email they accidently sent to someone
- They’re bored
- They want to be a hacker
Hacking can be very easy, or it can be quite difficult, depending on whom your target is. You could get access to someone’s email account and Facebook account in less than 5 minutes or sometimes it could take a few days and a bit of effort.
In this post, I will tell you some steps you can perform to hack someone’s email account, hack someone’s Facebook account, or hack other online accounts such as Twitter, or LinkedIn. I’m not going to go into depth of each of these services, but tell you the general techniques you can use. The second part of this article will show you some tools in which you can learn how to hack and take down websites.
Hacking Online Accounts
Hacking online accounts usually requires you to guess the targets password, or to try and their password for a particular service such as Facebook, Gmail, or Hotmail. Usually, if you can get into their email account, you can get into other services they have like their online banking accounts. So how can I break in?
Guess the Target’s Password
The first approach to do is to simply try to guess their password. So if you are trying to break into someone’s email account, go to Hotmail, Gmail (or their other email provider), and type their email address in for the username, and start guessing his or her password.
Here are a few common passwords you can try:
- Common passwords such as:
- 123456
- 1234
- password
- abcd
- abcd123
- qwerty
- Other most used passwords
- Personal information such as:
- Where they lived
- Their name
- Pet’s name
- Street they live on
- Girlfriend/boyfriend name
- Data of birth
- School/Uni
- Place they work
- Phone numbers
- A favourite TV show
- Favourite band
- Favourite food
- Best friend
- Favourite character
- Other passwords you know they have used
This list can go on and on and will probably take a few days to go through most of the common passwords as sites like Gmail and Hotmail will block you out after five or so invalid login attempts. Also, ensure you take into account capitalisation when entering passwords (excluding Facebook). If all else fails, and you give up, try the next option.
Forgot Password Link
Most people gain access to others people’s accounts through the forgot password link. By using this method, they will know someone has hacked their account, as they cannot log in because you have changed their password on them. So you only have until they reset their password (using the same method as you just did), or if you really hate them, you can change their secrete question, phone numbers or secondary email accounts answers so they can never log in again. However, with Facebook, and even Gmail, they can still regain access by providing friends and recently contacted people.
What this method entails is for you to go through the forgot password feature on the relevant service. Each service is different. Some may send you an email of your password, other will send an SMS to your phone or an alternative email address, or some will get you to answer your secrete question and ask information about where you live. Sometimes, this information is easily guessable, so if you know your target well, it could be easy. If not, you need to perform the next step.
Social Engineering
Social Engineering is a great way to get access to someone’s account. For example, if you try to reset someone’s password for their email account, and their secrete question is “what is your mother’s maiden name” or “what was the first street you lived in”, you can find this out just by talking to them and asking the right question.
Therefore, if you’re not sure what the targets mother’s maiden name is, ask them subliminally. Start by talking to them about something irrelevant, and steer the conversion to their family history and see if you can determine their mother’s maiden name. Do this for the other secrete questions you may have to answer as well. With this step, you have to be careful, as you don’t want them to trigger what you are up to. Once you have the answers you are looking for, just go to the Forgot Password link and you should be able to log in.
The other thing you could do, if you have the skill is to create a phony website that could either look like Facebook or Hotmail, or a site where they can claim something if they enter their username and password. Alternatively, create a site saying, “I can hack someone’s Facebook account for you, just give me your password”. It’s really amazing how many people fall for this tactic.
Steal Their Phone
If your target has their phone lying around, try to get access to it. Usually, people are already logged into their email and Facebook accounts so it should be easy to change their password on their phone. It could be hard to get unlocked access to their phone, but you can prepare by getting a video uploaded onto Facebook, get them to start watching it, and then get them to leave while you continue watching it. Make sure the video doesn’t have sound though, and while they are gone, change their password. They will not know a thing. First, check their account settings on Facebook to ensure notifications are switched off. It’s very risky tactic, unless they lose their phone or you temporarily steal it – provided you know their access code to get onto their phone.
Go on their computer
If you visit their house, ask if you could check your email on their computer. Don’t check your email, but check theirs and change your password. They may derive a conclusion, but you could get short-term access (even if you don’t change their password). If you only need to read or delete their emails, you have plenty of time to do it.
While you are at it, open up their password manager and take a photo of their passwords with their phones. Make sure you know where to find it first so you don’t waste any time looking for the settings. The other thing you can do is install a Keylogger on their computer and get it to send you the logs via email.
Words of Advice
- Don’t be obvious
- Cover your tracks so you don’t get caught (if you know how to)
- Don’t hack someone’s account who is technologically smarter then you
- Know the system first, especially if the site sends email notifications
- It’s most likely illegal
Once you’ve gained access to their email account, you can use the password reset feature in other services to send password reset instructions to the email account you now have access too. However, to be slyer, search their emails for passwords first.
Hacking Websites
Hacking a website is different to what is instructed above. To be able to hack websites, you need to know how to code. So if you don’t know how to code, this step will be a lot harder, or impossible for you. Nevertheless, continue to read as you might learn something.
There are many ways you can hack a site:
- Viewing page source or modifying URL’s
- Through JavaScript
- Exploiting their code with injections or including other files
- Spoofing your information to get what you want such as modifying cookie information, referral data or JavaScript variables
- Through SQL Injection attacks
- URL manipulation
- Uploading of malicious data
- Cross Site Scripting (XSS)
- Through cryptography
- Software cracking
- and using many more ways
Depending on the site, none, one, more than one, or none of these tactics will work for you. It is all up to the developer of the website and on how good of a coder they are. For some sites, it could be very easy and for other sites, it could be very difficult. However, here is a very brief overview of some things you can try.
Viewing the page source
By viewing the source of the website, you may able to understand how the code works and what it is doing behind the scenes. It will give you clues on what sort of hacking technique you should try. In some very low secured site, it might even tell you the username and password to login.
JavaScript
If the site uses JavaScript, you maybe be able to change some of the values of the variables to get what you need. If you know JavaScript, just type your code into the web browser like this javascript:alert(“hello”);
SQL Injections
SQL Injections is probably one of the easiest and most effective ways into hacking sites. If you know how SQL statements work, you can easily change it to match your needs. For example, a SQL statement for a PHP based website could be SELECT * FROM USERS WHERE ADMIN = “$username” AND PASSWORD = “$password”;
The PHP variables $username and $password will be assigned the values the user entered into the username and password textboxes. If the user correctly enters the correct username and password, they query will return a result, thus logging you in. However, instead of entering the username and password, we can inject some SQL and modify the query result. For example, we can enter fdfdfd in the username field, and gdgfd” OR “1” = “1 in the password field. By doing this, the query will be SELECT * FROM USERS WHERE ADMIN = “fdfdfd ” AND PASSWORD = “gdgfd” OR “1” = “1”;
This statement will return true because 1 is equal to 1 and will grant us access.
Other possibilities are to try depending on the SQL Query are:
- ‘ or 1=1–
- ” or 1=1–
- or 1=1–
- ‘ or ‘a’=’a
- ” or “a”=”a
- ‘) or (‘a’=’a
URL Manipulation
Sometimes you can hack a site just by modifying a URL to get what you want. For example, you can change the URL to /admin or /administrator to access the administrator section, or ?accessgroup=2 to 1 to change your permission level. However, all sites are unique and this is just an example.
Spoofing
It’s possible to hack sites through spoofing information. This could be changing your referral data, change your IP address from one country to a different country so you can access services not available in your country, or simply to change your Cookie information to pretend to be someone else.
Words of Advice
- It’s challenging
- It’s likely illegal
- Sites might keep logs and will track you down
This is only the basics, and there is so much more to learn that I have not covered.
How can I learn to hack?
If after reading this, learning how to hack is something you may find interesting, there is a really good site called Enigma Group that will allow you to practice your skills and practice on realistic scenarios to learn how to be a hacker. So visit the site, register, and see how you can go completing some of the basic skills. Keep in mind; some of them are hard, even for experienced security experts.
So, has your view changed on hacking after reading this? Is it easier or harder than you first thought?
Before you post a comment…
Before you post a comment on this article, please ensure it adds value to the article. Comments requesting help for hacking into someone else’s Hotmail, Facebook, Yahoo accounts etc may be deleted or not answered. This article is a basic guide only, not a request to get people to hack for you.
I want to know how to hack an ask. Fm account
Hi I had someone put my cover photo on a face book page and have been cyber bullied I have had to get the police involved as there were threats to my life but they wont do anything unless I find out who used my cover photo, can you please help me, this has been very stressful to my family. Thankyou
Provide them the Facebook user ID of the page, and get them to follow up with Facebook with a warrant to find out who it is.
Help me. I have an online shop. And someone hacked it. But still using the same Ig. But they change the email and the passwor. Can you help me get it back?
I would ask the company who setup/hosts your online shop to reset your password.
Is it possible to hack into someones facebook account by knowing the email just not the password WITHOUT changing the passwords , like with codes or anythings cause i tried doing the ”i forgot my password” but i dont want to leave traks… cant you help me ?
Possible… yes.
Can you do it… well that’s up to you.
Plz anyone help me to hack someone pass or tell me how to hack plz I really need it 🙁
Sorry, I can not help with personal requests. Thanks for understanding.
My bf and I have been dating for 8 years but I need to know if he’s cheating on me on his Facebook . I need help please
Sorry, I can not help with personal requests. Thanks for understanding.
what is his fb account?
jack cola could you please tell me how to hack email? its mine but i forgot the password!!!!
The best thing to do is to follow the services “Forgot Password” process. No need to hack if you used accurate information that you can remember.
Hi
I know the letters and in which order they go for someone’s password but I don’t know which letters are capitals or lower case in the password. Is there a website where It will give me every possible combination of the word using only capitals and lower case?
Thanks
Hello Evie,
Have a look at the second example on here: http://stackoverflow.com/questions/27992204/find-all-lowercase-and-uppercase-combinations-of-a-string-in-javascript
Just open a new blank tab on Google Chrome, type in javascript:, paste the code, change the word to what you want, and it will output all the results on your screen.
Hello, I came here looking for info on how to get access so a certain fb profile. I have a business and own a domain name and I’d like to set up the fb page with the same same, however the name is already taken by a profile. I have tried to contact the person that owns the profile and send friend request to see if they be interested in selling it to me, but they won’t reply or accept friend requests. I suspect the the profile is no longer being used, since the last post I see was from 2010. Is there a legal or rogue way to take it over (provided the fact that it’s no longer used, or the person is dead)
Legal way, probably. But it could be costly because why do you have the right to that name? Someone in another country might have rights to that name as well. Facebook is global, so first in best dress.
But Facebook’s policy is, once a username has been assigned once, it cannot be reassigned or used on another profile.
I would get in contact with Facebook. That’s the only way.
I wish I was smart enough to do all of this thanks for the advice!
Hello, I really, really want to hack my old account in meet me website. it’s really bothering me. I guess, year 2010 when I last checked my account in meet me. And I can’t even remember my password and email. I’m really not good in hacking an account, is there a step by step or process how will I hack my own account in the said website? sorry for the disturbance, I just really need you help. Thank you
Hey someone hacked into my fb account please help
Hello,
Please have a read of these two articles:
1) http://www.jackcola.org/2013/06/how-to-tell-if-your-facebook-account-has-been-hacked/
2) http://www.jackcola.org/2013/06/i-am-having-trouble-logging-into-facebook-how-can-i-log-in/
I am really interested to know how to hack someone’s Facebook account or email,, all I want is to be a hacker for living
Hello Kuni,
Sorry, I cannot help with personal requests.
Jack cola could you please teach me how to hack a VK account ? I just wanna learn how to hack and i want to start with this site account and i am ready to pay for the lessons
Hello Riyad,
Sorry, I cannot help with personal requests.
I am not sure how far people would be willing to go. I found this article while researching if Facebook mutes or bans users for innapropiate behavior.
I am no top notch security expert but I have used this method in the past to teach colleagues and some friends about how vulnerable we all are.
My method involves booting Kali Linux on a live USB into a persistent installation and using the SET toolkit to clone websites instantly and https redirection to have them automatically forewarned to a specific site. In any case creating a fake email with a link to your fake website and a well designed message will convince people at once to click on the link. Once they fall for it and log in, you have stored their info and you now have access. You can do this easily with 20 minutes of setting up the distribution on your USB and once it’s running you can now start to hack people. This is effective both on a local connection and globally but if you want to do this without having access to the targets network you do need to port foreward.
I do not promote hacking or the act of obtaining information via an illegal action. Use this information under your own risk.
To put this in a nutshell, Google the word “Phishing”
My boyfriend used my iphone to long into his Facebook a lot. I know his email. That’s all I know. How can I hack his messages without him knowing I hacked his Facebook. I don’t want to change the password. Thank you!
If he has logged in, just read his messages. Unless of course he logs out.
I need to hack my own kik account I forgot both email and password
Hi, I do not use Twitter on a regular basis, but it’s always connected to my iPad, iPhone and Mac. Last Saturday my account appeared with mi pictures changed with some messages that brought me lot of trouble. 🙁 My password was not altered, is there a way to know how this could happen?
I would change your password ASAP, and follow this link for further info: https://support.twitter.com/articles/31796
hey i want to hack a dropbox account its really for a vood purpose its just that a girl is facing a prob coz her very personal photos are in one bad guy dropbox account i want to delete it ,it is really painful for the girl plz help plz contact me it is … the problem is i cant leak the girl name i cant tell anyone plz help
I need to hack a kik account that is inactive and it’s the admin in a group chat.
Hi!!! Can you please help me to find one password from Facebook? Please I am trying 2 months and I failed! !!! Please help me! !!!!
Hi I can’t remember my Twitter password. I know it’s 8 characters long but that’s it. I can’t reset because I don’t have access to the email it’s set up under at the moment. I’ve contacted Twitter and they said without that email they can’t help. Is there anything else I can do? I mean it is my account and all!!! Thanks so much!
I’d suggest getting access to the email address. As you can see by the number of comments I get on this page, Twitter will get the same and if you can’t prove you are the owner of the account as you don’t have access to the email address, how do they know it’s you? They don’t.
hi ! Someone hacked my facebook account but i can’t reset my password either my email or phone number because i don’t have access. How can i have again my account?? Thanks a lot
Why don’t you have access to your phone number or email address? I find that hard to believe.
What do you mean by ”Sorry, I cannot help with personal requests”???? What other request would make you help if i may ask?
Personal requests: assisting an individual gaining access to an account. I can only help with general advice that is not specific to an individual.