2FA omitted on FB attack. Possibly session hijacking?

Hi everyone,

Basically the title. I had a Facebook account that had enabled 2FA, email notifications and a strong password.I am not aware for any of my devices to be compromised.

On the 7th of January, I received a notification from Facebook that my account has been suspended due to violating community guidelines.

I initially thought it was mistake, but I am currently looking at the logs and I can see two sessions being initiated on the night of 6th, one from New York, the other from China.

And I am baffled, unless my devices/PC has been compromised (which I scanned and they don’t seem to be), how in the world did someone created a session like this. Furthermore without triggering 2FA or even an email warning for suspicious activity.

Does anyone has any ideas, I am very curious on how that has been achieved?

submitted by /u/_yy96_
[link] [comments]

2FA emitted on FB attack. Possibly session hijacking?

Hi everyone,

Basically the title. I had a Facebook account that had enabled 2FA, email notifications and a strong password.I am not aware for any of my devices to be compromised.

On the 7th of January, I received a notification from Facebook that my account has been suspended due to violating community guidelines.

I initially thought it was mistake, but I am currently looking at the logs and I can see two sessions being initiated on the night of 6th, one from New York, the other from China.

And I am baffled, unless my devices/PC has been compromised (which I scanned and they don’t seem to be), how in the world did someone created a session like this. Furthermore without triggering 2FA or even an email warning for suspicious activity.

Does anyone has any ideas, I am very curious on how that has been achieved?

submitted by /u/_yy96_
[link] [comments]

Private WiFi Hack Effectiveness

I have long been researching the actual effectiveness of wifi “hacks” for private wifi networks. Long story short I need help to see if I am on a wild goose chase of something that isn’t worth protecting. The possible situation is a private wifi network where the owner of the network is the actual “hacker”. What product or service would they use that is readily availabel to packet sniff & monitor network traffic? Do they have the capability to log from the network the usernames, passwords, & most importantly 2FA codes? What about stealing a session cookie for a logged in social media account? A lot of people talking about “compromised data” but how far could they actually go?

submitted by /u/jm3457
[link] [comments]

Titkok account shiled software

Hi, do You know of a software for Instagram/TikTok that can shield the account from being banned and from where I can download it? Thank You. submitted by /u/Mini-fresh-peach [link] [comments]

How to write malware

Yo hackers. Im an intermediate in python as I have developed a game but I actually wanna get into cybersec and ethical hacking. So I wanted to know how do you write malware or any code to pentest. I know there are tools to pentest but I personally want…

Easy way to download blender.

I would like to know how to download and run blender (The 3d modelling software) on Android phone/tablet. Devices are Samsung (tablet) and Poco (phone). Thank you for helping. submitted by /u/Random_person1233 [link] [comments]

Around 19,500 end-of-life Cisco routers are exposed to hack

Researchers warn of about 19,500 end-of-life Cisco VPN routers on the Internet that are exposed to the recently disclosed RCE exploit chain. Cisco recently warned of a critical vulnerability, tracked as CVE-2023-20025 (CVSS score of 9.0), that impacts small business RV016, RV042, RV042G, and RV082 routers. The IT giant announced that these devices will receive no security […]

The post Around 19,500 end-of-life Cisco routers are exposed to hack appeared first on Security Affairs.