1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Don't be stupid like me! (How I got hacked)

Discussion in 'Instagram' started by Hydrone, Dec 22, 2016.

  1. Hydrone

    Hydrone Regular Member

    Joined:
    Nov 19, 2015
    Messages:
    217
    Likes Received:
    53
    Occupation:
    Instagram Marketer
    Home Page:
    Hi guys!

    This morning has been absolutely horrible for me and I would like to tell you what happened so you can prevent it. I'm going to go through the everything that happened so if you can't be bothered to read the whole thing here are two things that you probably already knew to do but might be lazy like me and have not done them:

    - Don't have the same password for IG or your IG email as anything else and it would be even more secure if your IG account had a different password than your IG email.
    - Put on 2 step verification for both your IG account and email

    (I know these should have been pretty obvious but I just didn't really think to turn them on and now I am paying the price)

    Long Story:

    I woke up this morning to nothing out of the ordinary, my account was fine, email was fine etc. I go and just chill not really doing too much. I then go to my PC to check my emails and see that I've had multiple emails about password changes for gmail and twitter and instantly freak out. I proceed to go through the emails and it appears 2 of my twitter accounts and 2 of my emails had been hacked, so I try and recover them although all I can do is send a request to Google and Twitter saying that they were hacked. I was pretty annoyed although these accounts weren't too important to me.

    A bit more relaxed now that I've done everything I can, I go onto my 45K IG account and it said I've been logged out. I then start mega freaking out because that IG account is my biggest one and generates the most money out of all of them. I try to reset the password but of course, like the other accounts, he had changed the email, password and phone number. Next I sent a request for my account back to Instagram saying that it was hacked, unsure what to do next.

    I decide to go to my account to see if he had completely destroyed it with CPA, spam etc. but it all looked normal except for the fact that he had changed the bio to say "Kik me for promotions: (his kik name)". This gave me an idea, so I sent him a message pretending to be a buyer and trying to get his email (idk why I thought this would help) and he instantly knew it was me.

    I kept begging him for my account back and he kept saying "I don't know what I should do, I feel bad" and to be completely honest he wasn't too much of a dick talking to him (apart from the fact that he stole my account). After a long, long time trying to persuade him to give me my account back he said we should talk on Skype.

    We had a conversation on Skype where he basically told me how he hacked me which I have to admit I'm pretty glad he told me. I also thought at certain points he was going to give it back but he never did. All of a sudden he ended the call and then messaged me on kik saying "I don't know what to do" and then "bye, sorry".

    Now the bit you've all been waiting for, how I got hacked: He said that there were some websites which had there databases leaked and they were freely available to anyone online. I then was also stupid enough to not bother with two step verification on either Instagram or Gmail. So your email and password could be freely available to anyone on the internet right now. I have just changed all my passwords to different ones and added two step verification to everything to prevent this from happening again.

    Moral of the story is to not be as dumb as me.
     
    • Thanks Thanks x 6
  2. PersiaGrai

    PersiaGrai Junior Member

    Joined:
    Oct 20, 2013
    Messages:
    148
    Likes Received:
    15
    Wow bro, that's messed up. I'm sorry to hear about that. Don't give up trying to get your shit back. Thank you for the warning though.
     
  3. terinah14

    terinah14 Junior Member

    Joined:
    Apr 20, 2015
    Messages:
    113
    Likes Received:
    33
    Home Page:
    Wow. Sorry this happened.
     
  4. Hydrone

    Hydrone Regular Member

    Joined:
    Nov 19, 2015
    Messages:
    217
    Likes Received:
    53
    Occupation:
    Instagram Marketer
    Home Page:
    I know, I'm pretty salty at the moment although I'm also motivated to get back to where I was.
     
  5. Hydrone

    Hydrone Regular Member

    Joined:
    Nov 19, 2015
    Messages:
    217
    Likes Received:
    53
    Occupation:
    Instagram Marketer
    Home Page:
    Yeah I know, I hope I can get it back
     
  6. mjdsocial

    mjdsocial Regular Member

    Joined:
    Jul 29, 2016
    Messages:
    285
    Likes Received:
    31
    Gender:
    Male
    Thanks for sharing this. Instagram should be able to give your account back because you would have created it with your own mobile number.

    Make sure to show them the skype convo etc.
     
  7. Hydrone

    Hydrone Regular Member

    Joined:
    Nov 19, 2015
    Messages:
    217
    Likes Received:
    53
    Occupation:
    Instagram Marketer
    Home Page:
    Yeah I'm crossing my fingers! I unfortunately couldn't send them the skype convo because we did a call, although I have sent them the kik convo where he actually says the password for my account and says he hacked me.
     
  8. nimdekvan

    nimdekvan Junior Member

    Joined:
    Jun 3, 2015
    Messages:
    196
    Likes Received:
    54
    WTF ?
    I don't think there is any database leak. Even if it leaks it would not be shown directly what your password is, it should be encrypted like MD5 or something else.
    I'm pretty sure he's just lying.
     
  9. Hydrone

    Hydrone Regular Member

    Joined:
    Nov 19, 2015
    Messages:
    217
    Likes Received:
    53
    Occupation:
    Instagram Marketer
    Home Page:
    It wasn't from a big site or anything, I don't see what else it could have been because he kept naming sites that he could get my password for and I had signed up for all the ones he was saying
     
  10. nimdekvan

    nimdekvan Junior Member

    Joined:
    Jun 3, 2015
    Messages:
    196
    Likes Received:
    54
    Ok, so did you go to that site and see your own password?
     
  11. ePrime

    ePrime Jr. VIP Jr. VIP

    Joined:
    Aug 16, 2014
    Messages:
    313
    Likes Received:
    117
    Maybe you used same password and username on multiple sites? Not all sites store encrypted (MD5/SHA1) passwords.

    What he possibly did:
    Found a leaked database of some other site, searched usernames on Google and tried logging in the accounts with the password in the leaked database.

    You should ALWAYS turn on SMS/Google app authentication and keep the master keys safe in a different pen drive.

    Did you use same password on sites like "Boost Instagram Followers"... etc...?
     
  12. mlg131

    mlg131 Junior Member

    Joined:
    Oct 11, 2016
    Messages:
    104
    Likes Received:
    26
    Location:
    Cali, Colombia
    can't believe he skyped with you. how strange lol. total bummer about the hack though man, that sucks
     
  13. HoNeYBiRD

    HoNeYBiRD Jr. VIP Jr. VIP

    Joined:
    May 1, 2009
    Messages:
    7,502
    Likes Received:
    8,429
    Gender:
    Male
    Occupation:
    Geographer, Tourism Manager
    Location:
    Ghosted
    There were numerous data leaks on different sites in the past few years, where whole databases were stolen, passwords are not always encrypted either. The latest big one is Yahoo's leak with more than a billion of records. Some of those leaks are freely available on the clear web sometimes with hundreds of millions of records containing everything, emails, usernames, passwords, DOB, purchase details etc.. If you use the same email address and password between sites and especially when the password is the same for said email address, you can get into a situation like OP any time. The hacker very easily could get the account details from one of these leaks, he didn't need to lie.
     
    • Thanks Thanks x 1
  14. Hydrone

    Hydrone Regular Member

    Joined:
    Nov 19, 2015
    Messages:
    217
    Likes Received:
    53
    Occupation:
    Instagram Marketer
    Home Page:
    I did use the same password for all my accounts, although I have changed them all after this. It was weird, the websites he said had their database leaked weren't even related to Instagram, one was a gaming site and I can't remember the rest he said
     
  15. Hydrone

    Hydrone Regular Member

    Joined:
    Nov 19, 2015
    Messages:
    217
    Likes Received:
    53
    Occupation:
    Instagram Marketer
    Home Page:
    He said the site but I didn't write it down. It was something weird, in fact I recall him saying it was something with Minecraft which kind of makes sense since I used to only have the cracked version ages ago and they asked you to add separate usernames and passwords for each server
     
  16. Hydrone

    Hydrone Regular Member

    Joined:
    Nov 19, 2015
    Messages:
    217
    Likes Received:
    53
    Occupation:
    Instagram Marketer
    Home Page:
    I know it was super weird, he was the one that suggested it too
     
  17. rocky12

    rocky12 Jr. VIP Jr. VIP

    Joined:
    Nov 19, 2015
    Messages:
    219
    Likes Received:
    27
    Occupation:
    Engineer
    Location:
    INDIA
    what does that mean ? Our Credit card details are also unsecure ?
     
  18. JasonS

    JasonS Elite Member

    Joined:
    Sep 15, 2012
    Messages:
    3,034
    Likes Received:
    931
    As per my knowledge no one can change the current number without phone verification. You must have been stupid to gave him the verification code as well, right?

    o_O
     
  19. RightFootFanatic

    RightFootFanatic Regular Member

    Joined:
    May 31, 2015
    Messages:
    388
    Likes Received:
    216
    Occupation:
    DevOps
    Location:
    Whimsyshire
    That'S fucked up. From time to time I check my account names / emails on https://haveibeenpwned.com/ you could check if your logins are pwned
     
    • Thanks Thanks x 3
  20. Asif WILSON Khan

    Asif WILSON Khan Executive VIP Jr. VIP

    Joined:
    Nov 10, 2012
    Messages:
    12,599
    Likes Received:
    34,731
    Gender:
    Male
    Occupation:
    Fun Lovin' Criminal
    Location:
    London
    Home Page:
    • Thanks Thanks x 6