What to do if your facebook page is hacked

Even technically sophisticated friends are currently getting “hacked” on Facebook — here’s how to avoid it, and how to make sure your hacked account is fully recovered.

Usually, accounts are “hacked” because someone somehow gets a hold of your password. That’s bad for Facebook in particular, because people often use Facebook to log into other things — so if someone gets into your Facebook account, they have access to a bunch of other things too.

If your account has been hacked

Your account being “hacked” can take many shapes. Perhaps someone is sending messages on your behalf, posting as you or doing something else weird.

If you can still log in, you’re in luck; here’s what to do:

Change your password right away — that’s your first step, if you still have the power to do so. If you can’t log in, request a password reset. If that doesn’t work, it’s possible that someone has changed the email address on the account. There’s a way of dealing with that, too.

Report the weird behavior to Facebook, so they can help stop it happening to others.

Go to your security settings, and see if you recognize everywhere you are logged in. If you don’t recognize a location or a device, press the three-dot menu, and select “not you?”. This will log you out and will help you further secure your account.

What to do if your facebook page is hacked

Check that you recognize all apps and websites that have access to your Facebook account. Same as above; if there’s something you don’t recognize, hit “remove”.

In your general settings, check the e-mail addresses Facebook has listed for you. If there’s anything there that isn’t yours, remove it.

Change your password one more time, now that you know hackers (in theory) don’t have access to your account anymore. It should be a secure password (with letters, numbers and special characters). Don’t re-use your password from somewhere else. Ideally, use a password manager to ensure that you can keep track of all your different passwords, and use higher-quality passwords in general.

Turn on two-factor authentication. That means that even if your password was somehow stolen, they can’t log in without also having access to your phone or your authenticator app.

And finally, whenever something weird happens to your security and/or social media, change your email password. It’s bad enough to lose access to your social accounts, but your email is the holy grail for hackers, so rotating that password regularly (every 1-3 months) and changing it whenever something strange happens is a very good idea.

How to prevent getting hacked

The most common way that a Facebook account is compromised is by tricking you into giving the hackers your password. You may get a Messenger message from a friend on Facebook, saying something like “OMG did you see who died?” with a link. You click on the link, it looks like Facebook, but suddenly you’re being asked to log in again. You think nothing of it, and you type in your email and password… Uh-oh. Problem: The site that you just gave your password to isn’t actually Facebook, and now they have your password.

The best way to avoid this is to follow the steps above and turn on two-factor authentication. Then be vigilant: Whenever you log in, are you logging into a site that starts with https://www.facebook.com? If not — if it looks like something like ffacebook.com or facebook.this-is-a-security-notification.com — don’t type in your password. The safest thing, typically, is to manually type in Facebook.com into your URL bar if you’re using a web browser.

Remember that the Facebook app has a browser built in. So it’s possible that you are ‘in’ the Facebook app, but it could ask you for a password. It looks legitimate — how could it not be, this is the Facebook app — but use your head; if you’re already in the app, why would it ask you to log in? In short: If it seems weird, it is weird — don’t type in your password!

Check the apps that have access to your Facebook account (see above) semi-regularly. If you recognize an app but you haven’t used it in a while and you don’t think you’ll need it — delete it. You can always add it again later.

“Why would someone want to hack my Facebook account?” may be the first thing that comes to mind for those who aren’t celebrities but have had their Facebook account taken over by cybercriminals.

However, having your Facebook account hacked is actually not that uncommon. There are many reasons why someone might want to gain access to your Facebook account. While stealing your personal information like your passwords and other credentials is one major motivation, forcing your Facebook account to share spam with your friends online is another.

Whatever the reason may be, hacked social media accounts have become a part of life. This is why it’s important to know the steps you can take to recover your Facebook account once you’ve discovered it’s been hacked.

This is a step-by-step guide on recovering a hacked Facebook account along with next steps you should take to ensure it doesn’t happen again with input from several cybersecurity experts. (And don't miss our guides to how to make yourself anonymous on Facebook, how to block and unfriend someone on Facebook, and how to protect your identity, personal data and property.)

1. Check to make sure your account really has been hacked

If you notice suspicious activity on your Facebook account including changes to your name, birthday, email address or password, new sent messages or friend requests to people you don’t know or posts appearing on your timeline you didn’t post – then go to the upper right-hand corner of your Facebook page and click on the arrow there which will reveal a drop-down menu.

Click Settings and Privacy > Settings and a new menu will pop up. Choose the Security and Login option and then Where You’re Logged In. If there is a login from a device or place you don’t recognize, then your account may have been hacked. 

2. End the intruder's session

Click the three vertical dots next to the device login that you don't recognize, then Not You? or Log Out. This logs the intruder out of your account, at least temporarily. This limits the damage the intruder can do and allows you to continue regaining and securing control of your account.

3. Alert your contacts

If your account has been compromised, it likely has already been used to contact people from your friends list. You'll need to tell them not to trust any links or install any apps that you had sent them — via wall postings, Facebook messages or Facebook email — while the intruder had control of your account.

4. Change your Facebook password

If the intruder has not changed your password, then changing it is easy. Click Security and Login again, then scroll down to Login and then click Change Password.

"If you use the same password for multiple sites, it is best to change your passwords there as well," said Cosette Jarrett, a web-marketing specialist based in Salt Lake City. "If your password has been compromised on one site, chances are your accounts at other sites are in danger, too." 

This is why password reuse is such a big problem. Fortunately, you can nip it in the bud for good by using one of the best password managers to generate strong, complex and unique passwords for each of your online accounts. You can also follow these tips to create a secure password.

5. Reset your password if the intruder has changed it

Often, hackers will change your password once they have gotten control of your account, so it's not as simple as just going into your account settings and changing your password.

You'll have to reset your password by clicking the Forgot Your Password link underneath the Facebook login. You will need to provide information to identify yourself, such as the email address you used to register with Facebook, the phone number associated with your account, your Facebook username, or your name and the name of one of your Facebook friends. 

The last option may be best if you believe the person who hacked your account has changed any of your profile information.

6. Report your compromised account

If ads or spam are being sent from your hacked account, you must report it as compromised, which you can do at this link (opens in new tab). After reporting, you will receive further instructions from Facebook to resolve the issue.

7. Check for malicious apps

Once you have control of your account again, go to the same Settings menu where you checked for suspicious logins or changed your password, and click on the Apps option in the left-hand menu. Go through the list and check for any apps you did not add yourself, and click the X next to them to remove them. It's worth noting that if you don't use an app for some time, it will expire automatically.

8. Secure your Facebook account

Getting your Facebook account hijacked is not the end of the world. Having it happen to you, though, can be a good reminder to make sure your account is as secure as it can be.

Facebook itself offers a number of security tips (opens in new tab). You should use a unique password for Facebook, one that you do not use on any other sites; you should log out of Facebook when using a computer you share with other people; you should run the best antivirus software on your computer (or the best Mac antivirus software if your using an Apple computer); and you should be careful about the links you click on and the apps and files you download. You can also run a Security Checkup (opens in new tab) while logged in to your Facebook account.

Even if you have not been hacked, shoring up your Facebook security is a good idea. Since many Facebook account compromises are caused by external apps, consider limiting the number of apps you use in general, both on your computer and your smartphone.

Do not click on suspicious links or ads shared in your news feed, even when you trust the people who are doing the sharing — it's possible they themselves have been hacked. Always make sure your desktop web browsers and mobile operating systems are up to date. And be sure to sign out when you're done using Facebook for the day.

The same goes for other social networks. Twitter, Instagram, LinkedIn and others have all had user accounts compromised in various ways. As always, remain vigilant and be smart about what you do online, and you'll be just fine.

What are you supposed to do when you get hacked on Facebook?

If your account has been hacked.
Change your password right away — that's your first step, if you still have the power to do so. If you can't log in, request a password reset. ... .
Report the weird behavior to Facebook, so they can help stop it happening to others..
Turn on two-factor authentication..

Can I recover my hacked Facebook page?

The best thing you can do is contact a Page admin or someone with Facebook access with full control to the Page and ask them to add you back. There are different kinds of Page roles and access, and only Page admins or people with Facebook access to a Page with full control can add or remove people.

Should I delete my Facebook account if its been hacked?

Facebook's policies on disabling or deleting hacked, unused or unconfirmed accounts. Removing hacked, unused, or unconfirmed accounts helps reduce the amount of potential abuse on our platform and protects the privacy, integrity and security of your data and your account.

How can I recover my FB page?

From your main profile, click or your profile picture at the top right of Facebook..
Select Settings & privacy, then click Settings..
Click Your Facebook Information. ... .
Click Reactivation, then next to the Page you want to reactivate, click Reactivate..