forumNew topic

My Facebook page got hacked and my admin access was removed — how do I get it back?

OOrhan K***Member
Job title
Human Resources Specialist
Sector
Electrical-electronics
Organization type
family business
Joined
Apr 2026
Message
395

Doki · Phishing awareness training · 2026

#1

Two days ago, the business Facebook page for our home textile brand—which we've been running in the US for 3 years, with 22,000 followers—was stolen. Nearly a third of our e-commerce traffic came from there, and we were managing an average monthly ad spend of 3,500 USD. One of our employees clicked a legitimate-looking copyright infringement link, and our business manager account was hijacked.

The attackers first stripped all admin privileges from me and our marketing lead, then linked a suspicious profile that seems to be based in Vietnam. Within a few hours, they ran up 800 USD on our linked corporate credit card. We called the bank and cancelled the card right away, but our main concern is recovering this page, which represents 3 years of hard work.

The Meta support panel just keeps bouncing us around automated help articles; we can't reach an actual human being. How does the recovery process actually work when you've completely lost admin access to a business page? Has anyone successfully reclaimed their page by submitting company documents to prove ownership?

EEsra I***MemberCommunity member
Joined
Dec 2023
Message
214
Most Helpful#2

Short answer: Even if your admin access has been revoked, you can reclaim the page by submitting an ownership dispute backed by your business registry documents, tax certificate, and an identity declaration. Once you provide official paperwork proving you are the legal representative of the business, they generally open an investigation.

First, you need to open the hacked accounts or intellectual property dispute form through the business support portal. The form requires a notarized or officially signed statement. This statement must include the full legal name of the business, the stolen page's URL, the date of the breach, the email address of the removed admin, and a clear explanation detailing why the page belongs to your company.

Second, you must scan and upload your company formation documents (Articles of Organization or EIN confirmation letter for the US), a utility bill or invoice addressed to the business, and a copy of the authorized signer's government ID. If you've previously run ads on the page using your corporate card, including invoice IDs from your last 3 months of bank statements will significantly speed up verification.

Once the ticket is submitted, reply to the automated confirmation email and attach the exact same set of documents. The review typically takes 7 to 14 business days. Once approved, they will transfer the page to a clean business manager account that you set up.

MMerve K***Member
Job title
Production Manager
Sector
Agriculture
Organization type
40-person manufacturing company
Joined
Oct 2024
Message
34

Doki · Infrastructure migration · 2025

#3

First thing you should do is call your bank and file a chargeback for that 800 USD. Let them know the card was used on a compromised ad account without your authorization. After that immediately reset your personal profile passwords and the passwords of any linked email accounts.

JJale Ö***New memberCommunity member
Joined
Jun 2026
Message
10
#4

The biggest mistake people make in these situations is wasting time reporting the hacker's personal profile. You need to target the ownership of the page as a corporate asset, not the attacker's account. Personal support tickets go nowhere without company documentation. Submitting an official business ownership dispute with legal documents is the only viable path.

HHüseyin S***VeteranCommunity member
Joined
Jul 2022
Message
175
#5

The exact same thing happened to us last year. They ran 1,400 USD in unauthorized ads. We applied with our official business registration documents and bank statements. Exactly 11 days after submitting the file, they transferred the page to a brand-new business manager account we had created. They also refunded the stolen ad spend two weeks later.

TTaner K***Member
Job title
Sales Manager
Sector
Seafood
Organization type
medium-sized business
Joined
Sep 2023
Message
3
#6

anyone who doesnt enforce 2fa for their team ends up dealing with this sooner or later sadly... happened to us too took two weeks to get it back once we uploaded the company docs, but it was an absolute nightmare of a process. dont give up, keep replying to the emails consistently.

SSelim K***Member
Job title
Sales Manager
Sector
Media and publishing
Organization type
120-person company
Joined
Mar 2025
Message
305

Doki · SEO consulting · 2024

#7

Was the page tied to a business manager beforehand or was it created directly under someone's personal profile? If the business manager was already verified, the process moves much faster. But if it was just set up on a personal account with delegated admin roles identity verification can take quite a bit longer.

CCeren G***MemberCommunity member
Joined
Mar 2022
Message
54
#8

This hit our textile company right before our peak season. The standard support form was leading nowhere. Here's how we solved it: we reached out via live chat support through another business contact who had active ad spend, and explained the compromised page situation to that agent. They escalated it to a specialized review within two days and we got the page back.

MMehmet A***Expert
Job title
Software developer
Sector
Education
Organization type
300-person organization
Joined
Jul 2022
Message
2
#9

The moment you regain access, immediately take these three steps: 1) Bind the page to a fully verified business manager, and never leave just a single admin on it. 2) Require hardware security keys or authenticator-app-based 2FA for every employee with access. 3) Set strict daily spending limits on your ad accounts.

ZZafer A***Member
Job title
Secretary
Sector
Jewelry
Organization type
20-person company
Joined
Nov 2024
Message
142
#10

You're right. When making a decision, first look at what data you have on hand.

Start with a small trial; don't commit to everything at once.

TTuğçe T***Member
Job title
Agency Founder
Sector
Law
Organization type
120-person company
Joined
Nov 2025
Message
19

Doki · Server maintenance contract · 2025

#11

I agree, and I'd like to emphasize that. Taking measures without an inventory leaves doors you haven't seen open.

Proven by experience.

NNuri Y***Member
Job title
Co-founder
Sector
Jewelry
Organization type
a company within a holding
Joined
May 2023
Message
2

Doki · Phishing awareness training · 2024

#12

Timely topic.

MMetin C***MemberCommunity member
Joined
Feb 2024
Message
170
#13

Quick summary for newcomers: Start with a small trial; don't commit to everything at once.

When we decide without measuring, we always end up in the same place. Correct me if I'm wrong.

IIrmak B***Member
Job title
Customer service representative
Sector
Machinery manufacturing
Organization type
sole proprietorship
Joined
Mar 2024
Message
155

Doki · Brand identity · 2025

#14

Ill try it.

OOrhan A***Member
Job title
QA Tester
Sector
Software
Organization type
40-person manufacturing company
Joined
Jan 2024
Message
2
#15

I've been dealing with this for a long time. If it's your first time, start small; scaling comes later.

Correct me if I'm wrong.

GGökhan B***Expert
Job title
Information Security Specialist
Sector
Software
Organization type
8-person team
Joined
Nov 2023
Message
20
#16

the opposite happened to me thats why Im writing. if 2FA is on a stolen password alone is useless.

if the notification path is long, notifications don't arrive; missing notifications mean delayed incident detection. of course, it varies if your situation is different.

BBurak G***Member
Job title
Accounting clerk
Sector
Accounting & advisory
Organization type
two-branch business
Joined
Oct 2024
Message
184

Doki · Penetration test · 2026

#17

Exactly like that. Payment information changes are never verified through the channel they came from.

That's all, sorry if I went on too long.

SSelin U***MemberCommunity member
Joined
Mar 2026
Message
2
#18

Let me share what happened to me; it might be useful. If permission and scope aren't in writing, don't start that test.

Correct me if I'm wrong.

RReyhan K***Veteran
Job title
Data Analyst
Sector
Glass
Organization type
40-person manufacturing company
Joined
Apr 2024
Message
13

Doki · Phishing awareness training · 2023

#19

correct.

LLeyla Y***MemberCommunity member
Joined
Mar 2026
Message
61
#20

I'd say don't rush. Most incidents start with a leaked password, not a vulnerability.

Proven by experience.

Reply