A yellow hat hacker is a criminal who focuses on social media takeovers. They break into accounts on platforms like Instagram, TikTok, or Facebook to post scams, spread malware, embarrass brands, or dig up private info. Think “black hat” goals, but aimed at your socials.
A hijacked account can DM scams to your friends, leak personal photos, or trash your reputation. For brands, it can scare customers and cause real money loss.
Phishing: fake login pages or “verify your account” messages steal your password/2FA code.
Password reuse: one leaked password unlocks multiple accounts.
Malicious apps: shady “boost followers” tools request overbroad permissions.
SIM swap: attackers hijack your phone number to reset passwords.
Login alerts from new devices or locations you don’t recognize.
Friends report weird DMs, crypto links, or “giveaway” posts from your account.
Your recovery email/phone or password changes without you.
New apps connected to your account that you never approved.
Turn on MFA (prefer app-based or passkeys, not SMS only).
Use unique passwords with a password manager; change any reused ones now.
Review connected apps and remove anything you don’t trust.
Be suspicious of “verify now,” “copyright strike,” or “boost” messages with links.
If you’re hacked: use the platform’s recovery flow, revoke unknown sessions/apps, tell friends not to click recent links, and enable MFA after regaining access.