Advertisement
p7u

Twitter Jacking method - p7u

p7u
Oct 9th, 2018
513
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.55 KB | None | 0 0
  1. 1. Submit a password request to the account. If it says enter an email or phone number to send a password reset link, the account
  2. is vulnerable to jack (this method is jacking twitters via phone, email is a bit harder/different).
  3. ----------------------------------------------------------------------------------------------------------------------------
  4. 2. If it gives the last 2 numbers of the phone number linked to the account, this will be much much easier. This is where doxing
  5. comes in. you NEED to dox the twitter account holder OR atleast get the phone number attached to the account. By doing this,
  6. you can simply ask for their number for business inquirys or get their ip and ISP dox them to get the phone number.
  7. ----------------------------------------------------------------------------------------------------------------------------
  8. 3. Once you have the phone number attached to the twitter account, this is where social engineering comes in. Whatever carrier
  9. their phone number is, you're going to have to call them. e.g sprint, verizon, tmobile.
  10. ----------------------------------------------------------------------------------------------------------------------------
  11. 4. Before you call up their phone carrier service, you NEED to have their dox before hand to make things MUCH easier. Call up
  12. their carrier. Pretend to be them, make up a story, tell them you want them to do text OR call forward for their phone #,
  13. they will ask you a series of questions to determine your the account holder to make the changes on the number. If you have the dox, answering the questions will be flawless. once they verify your the owner, they are gonna ask for a phone number you want the calls or texts to be forwarded to.
  14. ----------------------------------------------------------------------------------------------------------------------------
  15. 5. once they say they entered your number in, they might ask if they can test it, do it. give them a number you own that CAN
  16. recieve calls or texts (Don't make it your personal phone number. If anything, make it a phone that doesn't have GPS on it, like an old nokia etc.). If you get a text or call on your phone, the call/text forwarding was successful.
  17. ----------------------------------------------------------------------------------------------------------------------------
  18. 6. Do another password reset to the target twitter. if it says enter phone number, enter the victims number. If done correctly, a code should be sent to your phone instead of theirs. enter the code in, twitter jacking successful.
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement