Friday, January 16, 2015

How to Hack an Email Account with Cookies

If you are a newbie and don't know about cookie, then for your information, Cookie is a piece of text stored on user computer by websites visited by the user. This stored cookie is used by webserver to identify and authenticate the user. So, if you steal this cookie (which is stored in victim browser) and inject this stealed cookie in your browser, you can imitate victim identity to webserver and enter hisEmail account easily. This is called Session Hijacking. Thus, you can easily hack Email account using such Cookie stealing hacks. 

Tools needed for Cookie stealing attack:

Cookie stealing attack requires two types of tools:
  1. Cookie capturing tool
  2. Cookie injecting/editing tool
1. Cookie capturing tool:
Suppose, you are running your computer on a LAN. The victim too runs on same LAN. Then, you can use Cookie capturing tool to sniff all the packets to and from victim computer. Some of the packets contain cookie information. These packets can be decoded using Cookie capturing tool and you can easily obtain cookie information necessary to hackEmail account. Wireshark and HTTP Debugger Pro softwares can be used to capture cookies. 

Update: Check out my Wireshark tutorial for more information on cookie capturing tool.

2. Cookie injecting/editing tool:

Now, once you have successfully captured your victim cookies, you have inject those cookies in your browser. This job is done using Cookie injecting tool. Also, in certain cases after injection, you need to edit cookies which can be done by Cookie editing tool. This cookie injection/editing can be done using simple Firefox addons Add N Edit Cookies and Greasemonkey scripts. I will write more on these two tools in my future articles.

Drawbacks of Cookie Stealing:

Cookie Stealing is neglected because it has some serious drawbacks:
  1. Cookie has an expiry time i.e. after certain trigger cookie expires and you cannot use it to hijack victim session. Cookie expiry is implemented in two ways:
    1. By assigning specific timestamp(helpful for us).
    2. By checking for triggers like user exiting from webbrowser. So, in such cases, whenever user exits from his browser, his cookie expires and our captured cookie becomes useless.
  2. Cookie stealing becomes useless in SSL encrypted environment i.e. for https (Secure HTTP) links. But, most Email accounts and social networking sites rarely use https unless vicitm has manually set https as mandatory connection type.
  3. Also, most cookies expire once victim hits on LogOut button. So, you have to implement this Cookie stealing hack while user is logged in. But, I think this is not such a serious drawback because most of us have the habit of checking "Remember Me". So, very few people actually log out of their accounts on their PCs.
So friends, this was a short tutorial on basics of how to hack Email account using Cookie Stealing.As I have stated, Cookie stealing has some disadvantages. But, I think Cookie stealing is a handy way to hack an Email account. In my next articles, I will post detailed tutorial to hack Facebook and Gmail accounts using Cookie stealing. If you have any problem in this tutorial on how to hack Email account using Cookie stealing, please mention it in comments.

Enjoy Cookie stealing trick to hack Email account.


  1. We are a team of Professional Hackers and private investigators

  2. We are a team of Professional Hackers and private investigators

  3. We are a team of Professional Hackers and private investigators, but why should you hire us?
    1. Every member of our team is educated with at least a bachelors degree
    2. We work around your budget
    3. We have the best privacy policies you can find on the web.

  4. Normally a fake hacker asks for payment before services that he does not still render
    at the end but I want to introduce you to a university graduate in computer science
    as well as computer geek for any sort of account,grade,email problem,etc,you name it.She
    shows proof of work and payment is made only after service well done to your satisfaction or text +1 415-237-6483.

  5. Tried a lot of hackers but i strongly recommend are ethical hackers that’ll solve all your problems like hack emails,Facebook, Twitter ,Instagram , change grades ,erase criminal records, credit and debit top up, insurance paper, access or recover lost files, background checks on individuals and organizations or monitor cheating spouses’ phone or social media activities, contact at CYBERAPPHACK@GMAIL.COM.

  6. I cannot over emphasize the professionalism of CYBERPROFESSIONALHACKER@GMAIL.COM I have spent several hours monitoring my husband and his co-worker flirting literally and there has not been any technical malfunctions. I have been able to monitor all his communications with his girlfriend and I can see clearly that he has a lot of them, he must be a devil, because i don't understand how he still comes home to tell me he loves me.. I have never been this disappointed and sad in my
    life before. I really want to thank my stars I took courage to contact him and for all his tender kindness towards assisting me and giving me exactly what I requested for in the hack. You can also take a bold step t contact him and find out about your cheating spouse: CYBERPROFESSIONALHACKER@GMAIL.COM

  7. Confront your cheating spouse with evidence, i was able to spy on my cheating

    ex phone without finding really helped me during my divorce


    spying and hacking social networks, school servers, icloud and much more,

    viber chats hack, Facebook messages and yahoo messenger, calls log and spy

    call recording, monitoring SMS text messages remotely, cell phone GPS

    location tracking, spy on Whats app Messages, his services are AFFORDABLE

    .................................... ONLY GOD CAN THANK HIM FOR ME

  8. Do you need to hack a Gmail account? i know of someone who can help.
    Mr James I saw a review about him and I needed help hacking my Husbands Gmail account so i contacted him and he said he was going to help me.I gave him the information he required about my Husbands account and afterwards i received all my Husbands Gmail messages activity linked directly to me. He was reliable and trustworthy i just want to say thank you. If you need help you can contact him via Email(