
Now I am going to describe the complete procedure carried out to do this attack,before doing that i would like to mention that this is very useful in "Social Networking".This is an effort to make the user aware of this kind of threat when they are working online and stay safe rather trying it on others.(Disclaimer)
1.Inorder to carry out we need three things Fake.html,login.php,Password.txt
2.To make the Fake.html right click on the original page and left click on the view source and copy it (ctrl + c) then paste it in a text file or notepad and save it as .html extension.
3.Now open the Fake.html in wordpad or notepad and search (ctrl +f) for "action=",edit the original value and assign login.php ie. action="login.php" and method="GET".
4.As we are made with the Fake.html now we will go for login.php,in order to make it we need the code given below.(DOWNLOAD)
Note:header ('Location: http://www.original-site.com ') in the above code,the victim will be redirected to the site as mention in this so,the original site is to be assigned.
5.Now open up a account in a free web hosting with PHP enabled and having file transfer protocol(ftp) for example:www.t35.com
6.Now upload the above two file ie.Fake.html login.php to the web account and then the hacker sends the link which looks like http://www.your-accnt.t35.com/fake.html
7.When the victim login to that link then the username and password gets store in a file as mentioned in step:1 which is automatically created in the web account then it can be opened to see the password.

Declaration:The author will not be held responsible for any illegal use of this article.This is only to aware the users the threats they are exposed to.
If you find this post useful and informative do post your comment and share it.
Phishing(using Fake login page)
Reviewed by Satyajit (Admins,a.k.a Satosys)
on
Friday, June 11, 2010
Rating:

12 comments:
really a gud tut in an easy way....thnx dude :)
keep visiting for new interesting posts.....do give some details abt u so i can track u back....
thumbs up dude ;)
@Terry Thnx....keep visiting... :)
yeah! Sure learnin damn much from here ;)
OK, now the tabs are working but when I type in the user and pass I get this ...
Parse error: syntax error, unexpected '<' in /home/freehost/t35.com/a/n/antoplant/login.php on line 1
This is not working for me,there is some php error which comes into force and the password is also not being saved.....
@Dhiraj may be the error is there on your end check all your steps again....I used the same code here also
http://www.securityhunk.com/2010/09/how-to-hack-facebook-account-tabnabbing.html
do check it.. :)
Thanks for visiting.. :)
You use tabnabbing/tabjacking for stealer password of facebook or use phishing?
Thamks
hi. my name is ritu....n m beginner in hacking....how can i knw more about hacking....i want to make my career in hacking plz suggest me....
hey this is anamika i need to know how to make password.txt file
Hi, my name is ankan and i am very loose in computer.. plese understood me the 4-6 stage easily...