Easy Way To Make Facebook Account Backdoor Without Scripting<br />Presented By Budi Khoirudin<br />feedback@khoirudin.com<...
About Me<br />Hello My Name is Budi Khoirudin.<br />I’m a IT Security Enthusiast's, IT Developer, Speaker, etc ...<br />No...
Knocking On Facebook<br />Don’t be a kiddies forever, You must be know how it works!<br />
Facebook Application<br />(Reference: https://www.facebook.com/help?page=1095)<br />
Facebook Application Authentication<br />Facebook Platform supports two different OAuth 2.0 flows for user login: server-s...
Graph API<br />(Reference: https://developers.facebook.com/docs/reference/api/)<br />
Graph API Permissions<br />(Reference: https://developers.facebook.com/docs/reference/api/permissions/)<br />
Graph API Explorer <br />(Reference: https://developers.facebook.com/tools/explorer)<br />
Let’s Beat Them!<br />…Proof Of Concept.<br />
Facebook Account Backdoor (Request Permissions) <br />https://www.facebook.com/dialog/oauth?client_id=YOUR_APP_ID&redirect...
Facebook Account Backdoor (Act As Vendor) <br />https://graph.facebook.com/oauth/access_token?client_id=YOUR_APP_ID&client...
Facebook Account Backdoor(Act As User)<br />https://www.facebook.com/dialog/oauth?client_id=YOUR_APP_ID&redirect_uri=YOUR_...
Any Questions?<br />...Ask To Me<br />“Backdoorku Menghantuimu!”<br />
Upcoming SlideShare
Loading in...5
×

Easy Way To Make Facebook Account Backdoor Without Scripting

16,469

Published on

Explanation About How To Make Facebook Account Backdoor Using API

Published in: Technology
0 Comments
1 Like
Statistics
Notes
  • Be the first to comment

No Downloads
Views
Total Views
16,469
On Slideshare
0
From Embeds
0
Number of Embeds
2
Actions
Shares
0
Downloads
51
Comments
0
Likes
1
Embeds 0
No embeds

No notes for slide

Easy Way To Make Facebook Account Backdoor Without Scripting

  1. 1. Easy Way To Make Facebook Account Backdoor Without Scripting<br />Presented By Budi Khoirudin<br />feedback@khoirudin.com<br />http://budi.khoirudin.com/<br />
  2. 2. About Me<br />Hello My Name is Budi Khoirudin.<br />I’m a IT Security Enthusiast's, IT Developer, Speaker, etc ...<br />Now I’m Working as Web Developer in a Enterprise Corporation<br />Project Freelancer<br />
  3. 3. Knocking On Facebook<br />Don’t be a kiddies forever, You must be know how it works!<br />
  4. 4. Facebook Application<br />(Reference: https://www.facebook.com/help?page=1095)<br />
  5. 5. Facebook Application Authentication<br />Facebook Platform supports two different OAuth 2.0 flows for user login: server-side (known as the authentication code flow in the specification) and client-side (known as the implicit flow).<br />The server-side flow is used whenever you need to call the Graph API from your web server.<br />The client-side flow is used when you need to make calls to the Graph API from a client, such as JavaScript running in a Web browser or from a native mobile or desktop app.<br />(Reference: https://developers.facebook.com/docs/authentication/)<br />
  6. 6. Graph API<br />(Reference: https://developers.facebook.com/docs/reference/api/)<br />
  7. 7. Graph API Permissions<br />(Reference: https://developers.facebook.com/docs/reference/api/permissions/)<br />
  8. 8. Graph API Explorer <br />(Reference: https://developers.facebook.com/tools/explorer)<br />
  9. 9. Let’s Beat Them!<br />…Proof Of Concept.<br />
  10. 10. Facebook Account Backdoor (Request Permissions) <br />https://www.facebook.com/dialog/oauth?client_id=YOUR_APP_ID&redirect_uri=YOUR_URL&scope=email,read_stream,offline_access,publish_stream<br />
  11. 11. Facebook Account Backdoor (Act As Vendor) <br />https://graph.facebook.com/oauth/access_token?client_id=YOUR_APP_ID&client_secret=YOUR_APP_SECRET&grant_type=CLIENT_CREDENTIALS<br />
  12. 12. Facebook Account Backdoor(Act As User)<br />https://www.facebook.com/dialog/oauth?client_id=YOUR_APP_ID&redirect_uri=YOUR_URL&response_type=token<br />
  13. 13. Any Questions?<br />...Ask To Me<br />“Backdoorku Menghantuimu!”<br />
  1. A particular slide catching your eye?

    Clipping is a handy way to collect important slides you want to go back to later.

×