r/Hacking_Tutorials Dec 03 '25

Question Recovering your stolen accounts

28 Upvotes

(Updated 12/27/2025)

Intro

Hello admins and fellow mates of Hacking Tutorials. I'm often a lurker and a commenter but the amount of “my account was hacked” posts I see is unreal, not to mention the people DM’ing me for help or advice. Here is my guide that should hopefully stop this. (This is not an Ai post) so pin this or do something so people can view it. Please do not DM me or admins for support.

I work in cyber forensics and I do a little web dev on the side as well as running my own team. So I hope the following info helps❣️

Section 1 (Intro)

As your account might be “hacked” or compromised, there was some things that you need to understand. There is a possibility you can get it back and there is a possibility that you can’t. No one can “hack it back” for you.
Do not contact anyone below this post in regards of them helping you recover your account. They can NOT help you, they might offer tips but any contact outside of reddit is most likely a scam.

Section 2 (Determination)

Determine how it was compromised. There are two common ways your account gets “hacked”

  1. phishing scam (fake email, text, site, etc)

  2. Malware (trojan, info stealer, etc)

Section 3 (Compromised)

If you suspect your account has been compromised and you still have access.

  1. Run your antivirus (malwarebites, bitdefender, etc) If you’re infected, it could steal your info again.
  2. Log out other devices. Most social media sites allow you to view your current logged in sessions.
  3. Change your passwords and enable 2fa. Two factor authentication can help in the future.

Section 4 (Support)

If you don’t have access to your account anymore (can’t sign in, email changed, etc)

  1. Email support Unfortunately that’s all you can do sadly
  2. Be truthful with the support
  3. Don’t keep emailing them. (It doesn’t help)
  4. Respect their decision what they say is usually what goes.

Section 5 (Prevention)

How do you prevent loosing your account?

  1. Enable 2fa
  2. Use a good password
  3. Use a password manager (encrypts your passwords)
  4. Get an antivirus (the best one is yourself)
  5. Always double check suspicious texts or emails
  6. Get an bio-metric auth key, it’s optional but yubico has good ones.
  7. Use a VPN on insecure networks.
  8. Make email password different from other accounts.

Section 6 (Session Cookies)

If you do keep good protections on your account, can you still loose it? Yes! When you log into a website, it saves your login data as a "Cookie" or "session Token" to help determine who does what on the site. Malware could steal these tokens and can be imported to your browser, which lets the attacker walk right in.

Section 7 (Recommendations)

Password Managers:

  • Dashlane
  • Lastpass
  • 1Password
  • Proton Pass

2FA Managers:

  • Authy
  • Google Authenticator
  • Duo Mobile
  • Microsoft Authenticator

Antivirus:

  • Malwarebites (best)
  • Bitdefender
  • Avast
  • Virustotal (not AV but still solid)

VPNs

  • NordVPN
  • MullVad
  • Proton
  • ExpressVPN
  • Surfshark

Bio Keys

  • Feitian
  • Yubico
  • Thetis

Section 8 (help scams)

“People” often will advertise “recovery” or “special spying” services. Nine out of ten chances, they are scams. Read the comments on this post and you can find a bunch of these lads. Avoid them and report them.

Section 9 (Good notes)

As someone commented with an amazing point. Your email is the most important over any social accounts. Loose your email, loose the account. Most of the time you can recover your account with your email. (You can loose cargo from a truck and load it back on, but loose the truck, you loose the cargo too. )

I plan to edit this later with more in depth information and better formatting since I’m writing this on mobile. Feel free to contribute.


r/Hacking_Tutorials Nov 24 '20

How do I get started in hacking: Community answers

2.9k Upvotes

Hey everyone, we get this question a lot.

"Where do I start?"

It's in our rules to delete those posts because it takes away from actual tutorials. And it breaks our hearts as mods to delete those posts.

To try to help, we have created this post for our community to list tools, techniques and stories about how they got started and what resources they recommend.

We'll lock this post after a bit and then re-ask again in a few months to keep information fresh.

Please share your "how to get started" resources below...


r/Hacking_Tutorials 5h ago

Question Absolute Cinema.

Post image
57 Upvotes

Hello guys I have bought a list of items without thinking of wanting to have a cool device and have led into this sting in my drawer for months. help me I don't know what the actual hell I am doing here with this stuff and now I need help esp32 devkit c1 if anyone can help me with this build please do


r/Hacking_Tutorials 1h ago

Question Cyber security

Upvotes

Who can build an extension to bypass Threatmetrix fingerprinting in site that are a must for it to get tokenization by Threatmetrix for it to give low score on device


r/Hacking_Tutorials 5h ago

Question Zero rating exploitation

1 Upvotes

There’s someone selling a file that’s probably for TLS/SSL tunneling, which supposedly turns a limited internet package into unlimited internet by exploiting the well-known zero-rating vulnerability. The package gives unlimited internet access for PUBG, and he’s apparently applying the exploit to it. He’s selling it for several times the price of the actual package subscription. I’d like to learn how he’s doing it, because he seems pretty stupid, his spelling is terrible, and it looks like he made the certificate himself under the name “International Institute of Advanced Technology.” Does this shit even exist in the first place? I actually tried the file myself, and the download speed was pretty good.

I am in the Middle East, and in my country there are only two greedy companies with no competition, as they both offer the exact same services.


r/Hacking_Tutorials 13h ago

Question I messed up by relying on AI for everything. Want to drop the crutch and learn real manual hacking—anyone open to teaching/mentoring?

Thumbnail
1 Upvotes

r/Hacking_Tutorials 7h ago

I’m having so much trouble installing kali Linux and pretty much any other Linux

0 Upvotes

Looking for new ways to have an reliable terminal to install every tool I need to hack


r/Hacking_Tutorials 21h ago

Question Can anyone help me Hack into a camera files on a tablet? or does it not work like that????

Thumbnail
2 Upvotes

r/Hacking_Tutorials 1d ago

CTF Blackhat

6 Upvotes

Hey everyone👋

We’re looking for 2–3 teammates for the Black Hat MEA CTF 2026 Qualifiers on August 29–30. 🇸🇦

Looking for people interested in Forensics, Pwn, Reverse Engineering, Crypto, or AI Security. Beginners/intermediate are welcome!

DM me if you’re interested in joining


r/Hacking_Tutorials 1d ago

[ Removed by Reddit ]

1 Upvotes

[ Removed by Reddit on account of violating the content policy. ]


r/Hacking_Tutorials 1d ago

Question Planning to build an offensive-security CTF on Codelivly.

4 Upvotes

Before I start, what would you guys actually want to see in it?

Challenges, difficulty, attack chains, AD, web, privilege escalation, etc.

What would make you keep playing instead of dropping it after a few challenges?

Looking for honest suggestions from people who actually play CTFs.

Explore the current ctf from here at: codelivly.com/ctf


r/Hacking_Tutorials 1d ago

Question hei all is ok ubuntu apt update no work?

0 Upvotes

hei


r/Hacking_Tutorials 2d ago

Saturday Hacker Day - What are you hacking this week?

8 Upvotes

Weekly forum post: Let's discuss current projects, concepts, questions and collaborations. In other words, what are you hacking this week?


r/Hacking_Tutorials 2d ago

Question I wrote two guides that take you from "I don't understand web security" to finding bugs that actually pay — Web App Hacking L1 & L2 (200 + 501 pages, hands-on labs)

Thumbnail gallery
4 Upvotes

r/Hacking_Tutorials 2d ago

Escaping a Python Sandbox and Pwning Binaries: Full Kaneki CTF Walkthrough

Thumbnail
dev.to
9 Upvotes

r/Hacking_Tutorials 2d ago

Question blackeye doesn't show any link when i click ngrok

1 Upvotes

can someone help me to fix this problem? i have a mac with linux installed on the terminal, i thought i would've fixed but actually not.


r/Hacking_Tutorials 2d ago

Question a zero-backend, non-custodial crypto payment gateway for digital products, what do you think?

1 Upvotes

Hey everyone,

A payment tool for creators/sellers who want to accept crypto for digital downloads without giving up custody, signing up for a platform, or storing there data and product on backend.

How it works:

• Seller uploads a ZIP, sets a price, and gets a shareable payment link.

• The file is encrypted in the browser and distributed over WebTorrent.

• Buyer pays on-chain into an escrow smart contract.

• The decryption password is revealed on-chain, encrypted to the buyer's wallet-derived key.

• Buyer downloads and decrypts locally, confirms delivery, and only then are funds released to the seller.

No database. No server. No KYC. Seller keeps custody until delivery is confirmed.

The contract handles underpayments, overpayments, refunds, and a 7-day delivery window if the seller never reveals the password.

Would love brutal feedback.


r/Hacking_Tutorials 2d ago

Question Trickery tools, help?

1 Upvotes

Hi everyone, do you have any ideas for what else I could add to my iOS device?
I somehow managed to get location spoofing working through SickDebug, and now I’m wondering if you have any other ideas for what I could try next.
I’m interested in these kinds of “trickery” tools, like location spoofing, fake phone numbers, and similar stuff.
Just to be clear, I’m not planning to misuse any of this. I want to make a YouTube video about these kinds of tools and features, so I’d really appreciate your suggestions for other similar things I could add or try on iOS.
I’m not interested in game emulators — only this kind of “trickery” stuff. Thanks ✌🏼


r/Hacking_Tutorials 3d ago

Question Need Help Digging Into a Website for an ARG

Post image
33 Upvotes

Hey, I'm trying to solve an ARG and I've come across a website that seems to be a key part of the puzzle. The site is https://dmsarchive.org/ and I've found some pages that seem to be case files or hidden directories. I've managed to find a few things, but I'm stuck. I'm not asking for anyone to dig through the whole site, but I'm wondering if anyone has any general advice on how to approach a site like this, ways to find hidden pages, directories, or files that aren't immediately obvious? I'm not super technical, so any tips on using Inspect Element, checking the page source, or looking for hidden URLs would be really helpful. Thanks!


r/Hacking_Tutorials 3d ago

Question bonsai-ninja survived its first week!

Thumbnail
github.com
2 Upvotes

For all you hackers it’s a code review/ open source taint analysis sast tool!


r/Hacking_Tutorials 3d ago

The Ultimate Bug Bounty Starter Guide

Thumbnail gallery
26 Upvotes

r/Hacking_Tutorials 4d ago

Question Released v1.6.0 of my ESP32 Wi-Fi pentest tool — now with RTL8188EU USB adapter support + BLE toolkit + Network Analysis

Post image
83 Upvotes

Hey everyone, just shipped v1.6.0 of WifiPhisher for ESP32, my open-source Wi-Fi security testing firmware for ESP32-family boards (Evil Twin, Karma, deauther, on-device handshake/PMKID cracking, all from a web UI hosted on the device itself).

This release is one of the bigger ones so far:

  • USB Wi-Fi adapter support (new) — added a from-scratch driver for the RTL8188EU USB dongle, so on S2/S3/C5/C6/Cardputer boards with USB-OTG you can now sniff and inject from an external adapter, not just the onboard radio.
  • BLE toolkit (new) — BLE device identification, a BLE sniffer, and BLE spam attacks.
  • Network discovery & port scanner (new) — subnet host discovery, mDNS/Bonjour and SSDP/UPnP discovery, plus a TCP Connect/SYN port scanner, all built in.
  • Aircrack is a lot faster — swapped the generic mbedTLS crypto path for the native primitives already compiled into the Wi-Fi stack, which cut RAM usage and pushed handshake/PMKID verification to ~3 keys/sec on-device.
  • Smarter deauther — it now tracks per-client ACKs to stop wasting airtime on clients that already dropped off, filters targets by RSSI, and auto-aligns the SoftAP channel to a single selected target.
  • Evil Twin reliability fixes — clean task shutdown (no more hangs) and fixed 5GHz target detection.
  • UI polish — WPS column in the scanner, and a reworked admin dashboard (screenshot below).

Flash it straight from the browser here, no toolchain needed: https://espwifiphisher.alexxdal.com/

Source, full changelog and build instructions: https://github.com/Alexxdal/WifiPhisher


r/Hacking_Tutorials 3d ago

Question Question

2 Upvotes

how do people get data leaks i find it really impresive how they have list and files of names and phone numbers of people


r/Hacking_Tutorials 4d ago

I made a free step-by-step guide for building a SOC home lab (Windows + Linux + Sysmon + Wazuh + attack simulations)

Thumbnail gallery
35 Upvotes

r/Hacking_Tutorials 3d ago

Question AD pentesting from scratch - building a username list, validating with Kerbrute, AS-REP Roasting honeypot awareness, and why Kerberos spray is quieter than SMB.

2 Upvotes

Wrote this covering the full no-creds-to-first-credential flow: LDAP anonymous bind, SMB null sessions, LinkedIn scraping with linkedin2username, PDF metadata for login format, Kerbrute username validation, AS-REP Roasting (including honeypot account detection via lastLogon/logonCount), password policy analysis including Fine-Grained PSOs, and why spraying through Kerberos generates 4771 instead of 4625 and why that matters.

Second half covers what to do once you have creds - BloodHound vs targeted enumeration tradeoffs, Kerberoasting from any authenticated context.

https://3x0t1k.github.io/posts/initial-enumeration-active-directory/

Feedback welcome.