Hack Gmail/ Yahoo /Facebook Password by brute force attack using Hydra - Backtrack

hi folks. Here I'm sharing another trick for noobs on How to easily hack someone's Gmail or Yahoo Password as many peoples ask me about it everyday. If you're new here then you can take a look at my previous article How to hack Gmail/Facebook Password. As me a lazy blogger also haven't posted anything on Backtrack for a long time so just thought to bind these two in a single article.
Now, if you're still using Backtrack R2 then upgrade it to R3 take a look here as me still using R2 :'( due to low bandwidth.
Additionally if you're a beginner with Backtrack then first few previous articles are highly recommended on LINUX
Alright, Lets get start..

First, lets take a quick overview about what we're going to do here. We'll apply different passwords on the target's Gmail id from a password list using Hydra which is available with Backtrack. That's why I still love it. :) It'll easily get back the password on successful login.

Requirements:
  • A password.txt file with a list of expected passwords, Either write your own or get one from here
  • Backtrack 5 (any version)
  • Internet Connection
Lets Hack something for real,

Turn on your Backtrack machine :P
Navigate to Applications > Backtrack > Privilege Escalation > Password Attacks > Online Attacks > hydra-gtk and launch the hydra tool
Now, under the Target tab set following parameters

Single target > smtp.gmail.com
port > 465
Protocol > smtp
and check > use SSL, show attempts and Be Verbose



Click on Password tab, set these parameters

Username > target email address
Password List > select the Password.txt file
check the option > try Login as password



Now move to start tab and click on start button at the bottom to begin the attack.
If everything goes well, then you'll get the password.

Note: Using a brute force attack from a Password list will never guarantee any successful result it depends how lucky you're. Hacking someones account without their permission is a crime so do use at your own risk. I'm not at all responsible in case you get your ass behind the bars.

Happy Hacking. :)

"The quieter you become, the more you are able to hear."
Previous
Next Post »

54 comments

Click here for comments
Anonymous
admin
10 September 2012 at 13:37 ×

Bonjour, pour moi il me sort des mots de passes diffèrent et qui ne son pas les bon, quel et le problème.merci

Reply
avatar
Aamir Ali
admin
3 October 2012 at 06:51 ×

How i will get to know which is the password. When the process will stop.

Reply
avatar
Gaurav Singh
admin
3 October 2012 at 07:17 ×

When the correct password will be found, the Tool will highlight it itself. Better try it first on a fake account with known password for ease of understanding.

Reply
avatar
Unknown
admin
3 October 2012 at 13:50 ×

would you like to tell me how to get the target name and the port and the protocol please?

Reply
avatar
Gaurav Singh
admin
4 October 2012 at 07:22 ×

for Target Name > Social Engineering
and port & protocol for Gmail/Yahoo/Facebook are just a small google search away.

Reply
avatar
Anonymous
admin
7 October 2012 at 04:39 ×

I've tried this a few times on my own account and it keeps giving me wrong passwords o_O

Reply
avatar
Gaurav Singh
admin
13 October 2012 at 15:11 ×

Follow all the steps carefully, its working fine with me

Reply
avatar
Anonymous
admin
15 October 2012 at 21:33 ×

Is this logical for finding the password of a single account?

any such thing as a "lite" version of this procedure?

Reply
avatar
Gaurav Singh
admin
17 October 2012 at 03:33 ×

Like I said in the article, brute force takes too long time however there are other ways like Keylogging and Phishing which are worth trying.
As you mentioned "lite version", stay tuned. I'll share something good pretty soon.

Reply
avatar
Anonymous
admin
25 October 2012 at 19:16 ×

I am getting a lot of Errors SMTP LOGIN AUTH.either this auth is disable or server is not using 554.5.7.0 Too many unauthenticated commands....

then i get the password but it not the right password....

Reply
avatar
Divine_Dev
admin
31 October 2012 at 21:05 ×

it shows only 64 attemps we can perform in one task.

Reply
avatar
Gaurav Singh
admin
2 November 2012 at 07:18 ×

Follow the steps correctly.
It worked fine with me.

Reply
avatar
Gaurav Singh
admin
2 November 2012 at 07:25 ×

@Divine_Dev..
Yeah, thanks I forgot to mention that.
Simple write a script in python or C to switch the IP address after every 5 mins.

Reply
avatar
Anonymous
admin
5 November 2012 at 02:00 ×

Hey, this is The only blog that i found looks legit. Ä° am an artist not a computer person and i need help. Just one account that i want to get into and it Will change my life. So please help me around email me heisabadboyyouareafool@gmail.com Thanks and regards

Reply
avatar
Anonymous
admin
8 November 2012 at 16:05 ×

Somebody help me crack a gmail please email me at nancyestrada584@yahoo.com! Please and thank u

Reply
avatar
Anonymous
admin
29 November 2012 at 04:02 ×

salut comemmet pirati une compte facebook ???

Reply
avatar
hackertr
admin
30 November 2012 at 20:52 × This comment has been removed by a blog administrator.
avatar
hackertr
admin
30 November 2012 at 20:53 × This comment has been removed by a blog administrator.
avatar
hackertr
admin
1 December 2012 at 05:53 × This comment has been removed by a blog administrator.
avatar
hackertr
admin
1 December 2012 at 19:32 × This comment has been removed by a blog administrator.
avatar
hackertr
admin
1 December 2012 at 19:32 × This comment has been removed by a blog administrator.
avatar
hagay
admin
2 December 2012 at 01:40 ×

INCR3DIBL3 H4CK3R
We can talk in person by email?

Reply
avatar
Anonymous
admin
2 December 2012 at 13:24 ×

i've used this on three of my own accounts and a friends and all passwords were wrong. Steps were followed verbatim. Suggestions?

Thanks

Reply
avatar
Anonymous
admin
3 December 2012 at 01:23 ×

Hi, thanks for the great tutorial. One issue: I haven't been able to find protocol and port data for facebook/hotmail/other services and I have spent a good bit of time trying. Admittedly, I am not a highly experienced pen tester and don't know the best places to look. Can you point me in the right direction? Namely for facebook and hotmail? Also, with gmail just testing on my own accounts, I am getting passwords but none of the correct ones. Do I need to "hash" them? Thanks in advance.

Reply
avatar
Anonymous
admin
4 December 2012 at 03:54 ×

somebody knows how to fix the error smtp login auth like the problem of the other nonymous

Reply
avatar
Anonymous
admin
9 December 2012 at 06:43 ×

I tried it to crack my gmail account, I followed the steps correctly and I created a wordlist WITH my password in it. But all I get is the wrong password. It tells me that it found the password but the one it gives me is not the correct one...

Reply
avatar
Anonymous
admin
10 December 2012 at 02:08 ×

Which server and port i have to config for facebook.
smtpout.mx.facebook.com 25 (google search) doesnt work.

cherio

Reply
avatar
Unknown
admin
11 December 2012 at 09:40 ×

[ERROR] file for IP addresses not found ?

Reply
avatar
Anonymous
admin
12 December 2012 at 03:35 ×

@INCR3DIBL3 H4CK3R

How can i get passwordlist.txt file

Reply
avatar
Unknown
admin
18 December 2012 at 08:28 ×

hello buddy..this example for hacking gmail,right?but if i want to hack facebook account,where should i change the parameter?and what it is?

Reply
avatar
Anonymous
admin
27 December 2012 at 14:40 ×

it works fine! thanks!

Reply
avatar
Anonymous
admin
21 January 2013 at 02:40 ×

hey how to create password txt.Should we use # for each password or write it directly one by one.

Reply
avatar
Anonymous
admin
28 January 2013 at 16:50 ×

Hi anonymous , can you help me to crack Just one Password of An email adress?
can you contact me at mixtrape@hotmail.fr , that will be nice of your part. thanks i'll hope you read this Post.

Reply
avatar
Anonymous
admin
5 February 2013 at 00:15 ×

My question is! Will a paid vpn keep my IP address from being spotted while bruting? and im in VMWare does that help also?

Reply
avatar
Anonymous
admin
11 February 2013 at 12:04 ×

Would anyone be willing to help me with this? Im not a very tech savy kinda guy, but if you could help me I would be very happy.

Please contact me my email is vitaexxxx@yahoo.com

Thanks

Reply
avatar
Charlie Kwan
admin
13 February 2013 at 11:26 ×

hi

I tried on my own accounts, but came out wrong results. I followed the steps exactly, wondering any other step I should take to refine results.

PS: using above txt file

Reply
avatar
Unknown
admin
21 February 2013 at 12:58 ×

Thank you very much for this usefull information! I really understand the topic now!BCFBL

Reply
avatar
Anonymous
admin
22 February 2013 at 10:59 ×

I get a lot of false positives. Is there any way to avoid that?

Reply
avatar
nurullah
admin
23 February 2013 at 06:56 ×

my mail is lazkopatgenc@hotmail.com.l lost my gmail pass.if you will find it contact me. l will pay for 10 dollar via paypal..

Reply
avatar
Anonymous
admin
6 March 2013 at 18:03 ×

Hi, INCR3DIBL3 H4CK3R

I would like to know if you can help me with some accounts, I tried the procedure but it didn't works for me, can we talk by email? my email is darcanch@hotmail.com

Thanks and have a nice day

Reply
avatar
Anonymous
admin
8 March 2013 at 10:16 ×

Does not work!!... I had my password right up the text file, and it was skipped...

Reply
avatar
Anonymous
admin
19 March 2013 at 13:35 ×

where i can download the backtrack ?

Reply
avatar
Anonymous
admin
19 March 2013 at 13:40 ×

can you give me some link. i want to download the Hydra – Backtrack

Reply
avatar
Anonymous
admin
19 March 2013 at 13:41 ×

Where can i download the Hydra – Backtrack

Reply
avatar
Anonymous
admin
24 March 2013 at 16:22 ×

for Facebook is : Target :xmpp.chat.facebook.com , port 5222 and check Show Attemps , nothing else !!! , I hope this helped u

Reply
avatar
Anonymous
admin
31 March 2013 at 17:15 ×

please, help me recover my yahoo password. someone changed my password. can we talk by mail, my email: xindungkhovi_nhoc2894@yahoo.com. thanks

Reply
avatar
waseem
admin
23 April 2013 at 07:59 ×

Can u tell me how to hack "tadkalive" user,i am new to hacking so teach.

Reply
avatar
waseem
admin
23 April 2013 at 08:02 ×

Can you tell me how to hack "tadkalive"user,i am new to hacking so kindly teach me plz...

Reply
avatar
Anonymous
admin
10 May 2013 at 20:46 ×

can anyone please help me with an old gmail account of mine? please email me at natu.chan@yahoo.com for the details. Thanks

Reply
avatar
Unknown
admin
31 May 2013 at 06:58 ×

hi,sorry I know a little English.i always to learn your tutorials.your tutorials is very top.
why i Write in :
Single target > smtp.yahoo.com
port > 465
give me error.
for example : atxxxat@yahoo.com or atxxxat@ymail.com
is this port for yahoo?

Reply
avatar
Anonymous
admin
9 November 2013 at 05:14 ×

is this any method to recover password by offline?

Reply
avatar
Anonymous
admin
5 February 2014 at 05:54 ×

Stp...besoin d'aide ..sa marche pas chez moi il me trouve des fausses mots de passes ..!! Je ne sais plus quoi faire

Reply
avatar
Anonymous
admin
18 February 2014 at 08:08 ×

can we use kali linux instead of backtrack linux 5?

Reply
avatar
Anonymous
admin
28 February 2014 at 03:35 ×

Your work is totally appreciative and informative. Magnetic Marketing Dan Kennedy

Reply
avatar