They might depend upon phishing cons, spam e-mails or prompt messages, or simply fake Sites to accomplish this. If HTTP authentication isn't in use and the service has a cookie-centered authentication scheme as would be the norm presently, then a 403 or possibly a 404 must be returned. Hackers may http://pigpgs.com