This Video has seen by many Facebook users and they have been made fool, video claims to offer you a tool to obtain credentials for friends’ accounts, said Satnam Narang, security response manager for Symantec, in blog post.
Upon clicking the video you will be redirected to a document of Google Drive that contains a piece ofJavascript code which was instructed to paste on your browser’s console window-a feature which is used by developers and execute it.
That’s it, after executing the code, you Facebook account has been hijacked to like other pages on facebook whcih is likely to be spam or scam like this and also being used by some hackers to earn money and deliver likes and followers for pages.
These type of attacks knows as “self cross-site scripting,” where user is tricked through various techniques to insert the malicious codes.
“Being able to hack someone’s Facebook password by just pasting some code into your browser sounds way too easy and should signal that this is a scam,” narang wrote. “It’s best to err on the side of caution and think twice before following instructions that ask you to paste code into your browser to hack passwords or unlock features on a website.”
4 Comments
thanks
i thought that it take’s the access token right ?
plz help me my gf 2 relation ship on
hey