Author Topic: FB Social Engineering  (Read 1002 times)

0 Members and 1 Guest are viewing this topic.

Offline WhysoS3rious

  • /dev/null
  • *
  • Posts: 7
  • Cookies: 0
    • View Profile
FB Social Engineering
« on: September 25, 2015, 11:39:18 pm »
Hello,
sorry to put this here but wanted to share the last 30 minutes of my time  :P.
A friend got to do a password recovery on his fb because of a security question. So beware people,other people knowing your username and some info about you can easily do a password recovery of your fb. Guess the security we put 5-6 years ago on our fb questions.
His security question was his mothers birthplace , anyone knowing him would know that.

Tried it on my account and it did a recovery too. No way to disable security question, no way to change it.

PS: Who want to help to track down the evildoer :P Got the public IP from FB and also an email adress.
Now waiting for him to answer the email so I can read the headers for some more info. Any other idea?
« Last Edit: September 25, 2015, 11:55:27 pm by WhysoS3rious »

Offline 0E 800

  • Not a VIP
  • VIP
  • Baron
  • *
  • Posts: 895
  • Cookies: 131
  • • тнε ιηтεяηεт ιs мү яεcүcℓε-вιη •
    • View Profile
Re: FB Social Engineering
« Reply #1 on: September 25, 2015, 11:56:05 pm »
I dont even know the birthplace of my own mother.

Did you know you don't have to answer the questions in a way that makes sense?

Q:What is your mothers place of birth?
A: potato bitch

Bet no one would guess that one.
The invariable mark of wisdom is to see the miraculous in the common.

Offline WhysoS3rious

  • /dev/null
  • *
  • Posts: 7
  • Cookies: 0
    • View Profile
Re: FB Social Engineering
« Reply #2 on: September 26, 2015, 12:00:00 am »
Security by obscurity, your mother though of that :P
Yes but actually people put the true info so after 2 years they can remember it and potato bitch my guess at least is after 2 weeks gone and pinky unicorn the next try.

Offline truecam

  • Peasant
  • *
  • Posts: 92
  • Cookies: -46
    • View Profile
Re: FB Social Engineering
« Reply #3 on: September 26, 2015, 01:52:17 am »
Why don't you just write down your critical passwords and information in the inside of a textbook or dictionary...... or porn magazine.
« Last Edit: September 26, 2015, 01:52:41 am by truecam »

Offline Melatonin

  • /dev/null
  • *
  • Posts: 18
  • Cookies: 2
    • View Profile
Re: FB Social Engineering
« Reply #4 on: September 27, 2015, 06:57:52 pm »
Wow, never knew some people answered truthfully to those security questions...