EvilZone

Hacking and Security => Hacking and Security => : WhysoS3rious September 25, 2015, 11:39:18 PM

: FB Social Engineering
: WhysoS3rious September 25, 2015, 11:39:18 PM
Hello,
sorry to put this here but wanted to share the last 30 minutes of my time  :P.
A friend got to do a password recovery on his fb because of a security question. So beware people,other people knowing your username and some info about you can easily do a password recovery of your fb. Guess the security we put 5-6 years ago on our fb questions.
His security question was his mothers birthplace , anyone knowing him would know that.

Tried it on my account and it did a recovery too. No way to disable security question, no way to change it.

PS: Who want to help to track down the evildoer :P Got the public IP from FB and also an email adress.
Now waiting for him to answer the email so I can read the headers for some more info. Any other idea?
: Re: FB Social Engineering
: 0E 800 September 25, 2015, 11:56:05 PM
I dont even know the birthplace of my own mother.

Did you know you don't have to answer the questions in a way that makes sense?

Q:What is your mothers place of birth?
A: potato bitch

Bet no one would guess that one.
: Re: FB Social Engineering
: WhysoS3rious September 26, 2015, 12:00:00 AM
Security by obscurity, your mother though of that :P
Yes but actually people put the true info so after 2 years they can remember it and potato bitch my guess at least is after 2 weeks gone and pinky unicorn the next try.
: Re: FB Social Engineering
: truecam September 26, 2015, 01:52:17 AM
Why don't you just write down your critical passwords and information in the inside of a textbook or dictionary...... or porn magazine.
: Re: FB Social Engineering
: Melatonin September 27, 2015, 06:57:52 PM
Wow, never knew some people answered truthfully to those security questions...