To answer the real question:
( aka the-old-school-method-of-getting-passwords)
Copy a genuine email that you got from facebook, including the sender name.
Change the contents to something like :
"Hi _realname_here we've detected some unusual activity on your account please verify your ... whatever.. privacy settings by clicking here _your_link_, or by logging in then click here and there"
Just make it sound complicated so they will click the link instead.
Obviously they arrive on a page that looks exactly like facebook, with the password field changed. Redirect them to facebook when you got the password.
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.