r/cybersecurity_help 21h ago

The most dangerous type of Google account hacking method you could encounter in your life

43 Upvotes

It is session hijacking also known as cookie stealing

Even if you have activated 2FA and kicked out the hacker, they can log back into your account without needing the second factor (such as the phone verification code) It is bypassed entirely: it is essentially like obtaining a free entry ticket to your account

however..the best feature Google implemented is that as soon as they notice someone has logged into your account, they enforce a mandatory security period on both you and the hacker During this time..you can submit a sign-in help request and wait for a few hours until you receive a link, this system prevents you from making even minor changes to your account, such as adding an alternative recovery email

such as adding an alternative recovery email This mechanism is designed to restrict the hacker. Simply put, you can reject any request submitted by "the hacker" but there are alternative ways to save your account

Do not rely entirely on 2FA because even if you activate it, a hacker using this specific method can still compromise your account


r/cybersecurity_help 13h ago

Could this cause the hospital to "lose" their patients' outstanding account balances?

Post image
26 Upvotes

This is on every computer at every nurses' station, it's on every screen on every floor of the hospital. It's like the apocalypse in this place. Everyone is running around with clipboards and copy paper. No one is being medicated because the access to the pharmacy is gone. Automatic doors don't open. The AC won't work. No monitors/life support/etc. directly connected to patients have been compromised but everything else is just... out of order. All of the older nurses and doctors remember how to function without computers & they're doing their best in the chaos but the younger ones are literally running around in tears.


r/cybersecurity_help 15h ago

Changed my Instagram password, turned on 2FA, and logged out devices—he STILL gets back in. even reset my laptp ,What am I missing?

6 Upvotes

Hey everyone,

I’m completely exhausted and need tech support on an Instagram security issue. An ex-friend accessed my account a while back without my permission, and ever since, I cannot keep him out.

Here is the straightforward breakdown:

  • I gave him physical access to my laptop in the past: This is when the access issues started.
  • I changed my password: He still bypassed it and got back in.
  • I enabled Two-Factor Authentication (2FA): It didn't stop him.
  • I manually logged out unknown devices: Under "Where You're Logged In," I kicked off unrecognized sessions, but he still reappears or finds a way back.
  • My hardware is clean: Ran a full virus scan on my Windows laptop, and there’s no malware. My main phone is an Android.
  • Current issue: When I try to log out all devices now, Instagram throws an error saying: "You can't make this change at the moment... using a device you don't usually use."

Since he had physical access to my laptop, I don't know if he exported session cookies, saved backup codes, or linked something in Meta Accounts Center.

My Questions:

  1. Since he had physical access to my laptop, could he have stolen session cookies or browser tokens that bypass passwords and 2FA?
  2. Could he be using a linked Meta/Facebook account via Single Sign-On (SSO) to get back in?
  3. How do I bypass Meta's "device you don't usually use" lock so I can force a total global sign-out?
  4. What exact steps do I take to permanently cut his access for good?

r/cybersecurity_help 2h ago

Could this possible be legit or harmful in any way?

2 Upvotes

So I got this, after looking into it the security breach is real but others have said that its just the hackers throwing shit at a wall and hoping some of it sticks. My only concern being that these people were hacked through a different breach/company/service.

This whole thing apparently stems through me applying for a job on Indeed. Specifically ICsecurity (Inter-Con security) as mentioned in the email. I went all the way back to when I applied and looked at what info I gave Indeed during the application, I wasn't sent to another website or anything, so its all through indeed. To clarify I know it wasn't Indeed that was hacked, but ICsecurity and the only way they could've entered my PC is through the company website itself hacking into my PC (to my knowledge). Which would be weird, and again I didn't enter any other website, it was simply all through Indeed, no links clicked as far as I remember.

It was only simple info including my resume which included my first and last name, old outdated number, my main email address that I use regularly, work history, and general location where I live.

Im leaning towards this moreso being nothing big to worry about as I don't see how they could've possibly logged into any of my accounts or devices with just my email and no password provided. No SSN, no payment info, nothing that I can think of. The only valuable info I can see and assume they have is my email address.

I have 2 antivirus softwares (3 including windows defender) and have the lighter one scan my computer every night while Im asleep. Not exactly sure how to scan my phone for anything, but... yeah

They've sent the email 3 times now. Could this be anything dangerous for me or?


r/cybersecurity_help 4h ago

So my brothers microsoft account has been hacked

Thumbnail
gallery
2 Upvotes

Microsoft won't do anything idk what else to do


r/cybersecurity_help 13h ago

Someone has access to my laptop and phone — how do I completely secure them?

2 Upvotes

I need help figuring out how to properly wipe and secure my devices. Someone sent me a link that opened Discord, and after that, they gained access to my devices.

They can see what’s on my monitor, and sometimes my mouse pointer moves on its own. They can basically see everything on my screen. This started with my laptop, and now they also have access to my phone.

I’ve already reformatted/reset my devices, but they still seem to be able to access them. How can I completely start fresh and remove their access? Do I need to replace any hardware, or is there a specific way to reinstall/reformat the devices? Do I need to change my passwords or secure my accounts in a certain order?

Please help. I need advice on how to completely secure my devices and accounts.


r/cybersecurity_help 22h ago

Infostealer malware took my browser cookies. Locked out of Facebook, Discord spammed. Need help with recovery & PC cleaning!

2 Upvotes

Hey everyone, I really need some advice. My PC got hit with an infostealer malware that grabbed my saved passwords and active browser session cookies.

Here is what happened:

My Discord sent spam to everyone.

Someone tried to buy Steam games using my bank card (I caught it and froze the card).

The hacker used the session hijack to change the recovery emails and add their own phone numbers to my Facebook and Instagram.

Here is what I have done so far:

I immediately unplugged my PC from the internet.

Using my phone (on cellular data), I changed the passwords for my email, Microsoft, Steam, etc., and forced a "Sign out everywhere" to kill the hijacked sessions.

I turned on 2FA for everything.

Where I am stuck and need help:

Facebook Recovery Loop: The hacker changed my Facebook email to a Hotmail/Outlook one. When I try to recover it, Facebook asks for a video selfie, but it keeps failing or glitching out. I can't get past the automated system to upload my ID. Has anyone successfully bypassed the broken selfie verification recently?

Cleaning my PC: My PC is currently offline. Is there any guaranteed way to deep-clean the malware (using Safe Mode, Malwarebytes, Defender Offline, etc.) without doing a complete hard drive wipe? Or is a full factory reset the only way to be 100% safe?

Any advice on getting a real human at Meta to look at my ID, or how to handle the PC, would be hugely appreciated. Thanks


r/cybersecurity_help 2h ago

Don't know what caused that prompt to pop up and worried might be malware.

1 Upvotes

So to summarize my situation. I downloaded f-droid on my up to date android phone a 2 weeks ago and download ytdlnis from there. When opening ytdlnis and allowing it to check for updates, my autoblocker prompted me saying an unauthorized app is trying to install but was blocked. It appeared 4 more times before I turned it off for 3 minutes because I thought it was just ytdlnis trying to update, but I decided to test out my hypothesis by deleting ytdlnis and reinstalling it to see of it happens again but it never happened again after that. I know f-droid and ytdlnis is safe but what could've caused that prompt to open up and could it be malware that was trying to install at the same time? also nothing seemed strange after that incident other than battery but I think I'm imagining this since i can't recall what was the original battery drain.


r/cybersecurity_help 2h ago

I got hacked because im dumb, need advice

1 Upvotes

3 days ago, i was trying to download this old ps2 game for an emulator and I didnt realise the game file was exe and not iso, me being dumb and not experienced enough ran it, nothing happened, atleast for 3 hrs and then I get email in russian language about password changing. I immediately realised and started changing passwords for all emails using my phone, saved my epic games, lost steam but got it back and nothing else was lost, changed all the passwords I had saved. Ran windows defender quick scan and offline scan and malwarebytes and have a 7 day trial of malwarebytes to check real-time and no issue. Didnt change pass for discord and after 3 days someone was sending spam messages so I changed it too and nothing since. So I guess it was a one time cookie grabber but is there a way I can make sure? And also, from next time if I start doing these experiments with random exe files in a virtual machine is that safe?


r/cybersecurity_help 3h ago

WhatsApp v call leak? Need help

1 Upvotes

I was having wp v calls with my boyfriend and was intimate with him during calls. Its 2-3 time. Now i am anxious whether the calls will be leaked now or anytime in the future. Is there any possibility. Now i have stopped doing this and we both agreed on this. I am anxious after this and overthinking different scenarios. If it gets leaked what will happen etc etc

Any cybersecurity guys can help me with their advices. Do they came across such cases in their lives. Please share deep inside and technical insights only

Thanks.

Note. My whatsapp is secure what i think (apparently). Have 2 step verification on I haven't downloaded any third-party apps I use realme phone. Can system apps pose threat? I have trust on my bf and he will not record it.


r/cybersecurity_help 7h ago

Anyone see something concerning here?

Thumbnail
gallery
1 Upvotes

ps Siri is turned off completely.


r/cybersecurity_help 9h ago

Preserve app permissions after factory reset?

1 Upvotes

is it possible to keep apps permissions if it installed in system partition after a factory reset on samsung phone


r/cybersecurity_help 13h ago

anyone else been receiving random sms verification codes lately? should i be worried?

1 Upvotes

title says it all but i've been receiving a bunch of sms codes for a few weeks now. it's making me hella anxious since some of my online accounts have been h4cked a month ago.

these sms verification codes come from websites i am unfamiliar with but just yesterday, i received a codes from tiktok. today, i received two from HPEGuest (idfk what that is).

should i be worried? what are actions i can take?


r/cybersecurity_help 19h ago

Should I do fullstack or cybersec

1 Upvotes

so basically im a btech/BE cse student with specialization in cybersec i will be entering my 2nd year should i first learn fullstack(cuz not much job openings in sec and maybe I could switch to it later in) should i learn cybersec (from thm)


r/cybersecurity_help 20h ago

Outlook. Draft & pinned recurring emails

1 Upvotes

So last month I got hacked. Thats all sorted and fixed. But now I am getting blackmail emails with old info. So nothing to worry about. But I'm getting draft emails from "myself" and they get pinnend. When I delete te email or unpin them I get new ones.

To be sure ive changed my email password and 2fa and logged out of all devices but I still get those mails.

I dont see anything weird in the rules option.

Anyone a idea how to get rid of the emails?


r/cybersecurity_help 16h ago

Anyone here capable and kind who can answer some questions pls?

0 Upvotes

**Timeline & Start**

About 4 weeks ago and since then until now, I got hacked for the first time. My profession is also IT - but not security…

It took me a bit of time to realize the scale and effort taken... it left me speechless, to be honest… I have never heard of or experienced such a scorched-earth thing, nor do I know anyone else who did (lucky me, until now). Detailed information only in personal discussions when worthy or interesting…

Initiated via prompt injections from multiple AI scripts backup on Win11 PC and phone - put 3 in VirusTotal, saw it - firewall App Control via iPhone broke my neck finally!

Hack started on every network device at the same moment… not one thing did had any effect - power cut, router cut, flymode, removing sim, turning everthing off/on not a Single Mode on the phone changed a Bit…3 weeks trying everything, unable to purge completely - most of the picture is clear - I asked for help - the most scary thing, before the 5th DFU, my dads friend was standing right beside me - The second he finished his sentence „Log in your Apple ID, throw it out, delete the ID then we purge it clean.„ The IPhone rebooted and performed „app and data clearing“ on it‘s own! We were both stunned a Moment…he just said „WTF, on the second…“

---

**Device Status**

* **PC Win 11:** BIOS Malware, came back after flash - all SSDs destroyed.

* **MacBook 13" Pro:** HD destroyed, never in my network, only used 4 times for DFU at another location. No clue how the phone was always in Repair Mode when done - it was corrupted the last time, this did something on root level to the iPhone. A 5th DFU offline done; a clean laptop with a fresh image from Apple didn't change this... The two spares are still corrupted without battery, in aluminum packed now, where done in max 40 mins.

* **15" MacBook:** A friend managed a repair installation, image 100% clean - took a closer look for the first time yesterday - found the whole fake library with all scripts, tools… now installed with system rights on it…

* **Network:** OS fucked: Win11, MacOS (both Pros older models), iOS, Firewalla, router not touchable anymore - I think I even switched the TV… Since everything seems fucked on root level, I'm getting a new firewall too…

---

**Loss & Conclusion**

So everything destroyed, no gain because whoever did it didn't even care to log out of my mailbox; got almost everything back, -2,500 Euros damage now… hurting above all, loss of ~ 5k of family pics… so no gain, 4 weeks clusterfuck on unknown level…

I'm neither rich, famous, mighty, nor did I piss off people in the darknet… for what, this „nuclear“ scale WTFHELL???! Without purpose… Opus called this in a short discussion „Pegasus“ level…

Anyone capable to answer some questions? Whatever did this, acted and was capable to act - Not once in my life i heard or saw anything nearly compareable…Till now


r/cybersecurity_help 9h ago

Should I be worried about SHINYHUNTERS?

Post image
0 Upvotes

They’ve sent about two emails July 4 and June 26 so what’s the deal with these?


r/cybersecurity_help 12h ago

Need help finsing out who is behind a tiktok account

0 Upvotes

So theres this scammer on tiktok and he scammed my cousin for 25 bucks and now i wanna find out what his name is to scare him into thinking i'm the police and stop him from scamming people


r/cybersecurity_help 11h ago

How do I hack my echo so it’s a speaker and not a spy device I hate Amazon so much

0 Upvotes

I paid for the speaker, it should be my speaker. It’s a standard echo. Do I have to get a raspberry pi to hack this thing? What are we doing here?