How hackers hack Facebook account & how to prevent

Recently, Facebook fan account Zizan was hacked by somebody. Looks like they do it just for fun. Due to lack of security, Facebook become main target of hackers. Some hackers did it for fun and some of them have their own agenda to take control of the accounts and try monetize them by sending out the spams message in order to get credential info such as credit card number and contact number. But how they hack Facebook account? This post will highlight few ways of hacking Facebook accounts.

Email Address Hack

Here what hackers need to know is our email address. From email addresses, hacker can hack yours facebook account by simply using User id and clicking on ‘forget password’.This way Facebook will send link to the already hacked primary email id to change the password of the Facbook account. Hence the email hacker will change your Facebook account’s password.

How to prevent Email Address Hack
How to safeguard your Email Address?
Just follow these steps:-

  • Hide your Email Address from everyone by going to Edit Profile->Contact Information->Clicking on the icon beside your email address> checking ‘Only Me’.
  • Change your primary email address to a one that is only known to you by going to Account Settings->Email-> and changing your primary email to the new one (known only to you) and removing your previous email address.
  • For additional security, when in Account Settings, check ‘Secure browsing’ and ‘Send me an email when a new computer or mobile device logs into this account’ and click Save.


Phishing is an e-mail fraud method in which the perpetrator sends out legitimate-looking email in an attempt to gather personal and financial information from recipients. These messages look authentic and what all a hacker does is setup a webpage similar in design to that of the Facebook homepage, attach a server sided script to track the username and password entered and store it in a log.

Sending people emails stating that someone tagged a photo of them on Facebook in the same format as Facebook and giving a link below to the phishing website further reduces the chances of it being detected as a fake. Users are asked for their login information and they enter their username and password thinking it to be a real page but actually it is other way round.

How to prevent Phishing
Always check the URL in the address bar before signing in. Avoid logging in through various “Facebook widgets” offered by websites and blogs. Instead, use Facebook’s homepage to sign in.

Social Engineering

Social engineering involves using any trick to fool the user into making himself vulnerable to exploits. This could involve anything from sending spoof emails, pretending to be from Facebook, telling you to change your password to 12345678 to a hacker maliciously getting out the answer to your Security Question in a friendly chat or discussion.

How to prevent yourself from being socially engineered?
Just be careful. Don’t reveal any private or security info to somebody who you chat and discuss with in Facebook.

Save password in browser and forgot to logout

Beside that, users are carelessly save password in the browser Mozilla especially in the computer which not belong to user such as surfing internet in a cyber cafe, shared computer with somebody in the office/campus and also forgot to logout Facebook after using it.

