Google Account Hacked and Password Changed
Start Google Account Recovery
If your Google Account was hacked and the password changed, begin with Google’s official account recovery process. Open {site}, find the account recovery option, and enter the email address or phone number connected to the account. Do not keep trying the attacker’s password on the normal sign-in screen.
Select the choices that say you cannot sign in or that someone changed your password. Follow the prompts exactly as they appear. Google adjusts the questions based on the account and the information available, so another person may see different steps.
Before starting, move to a device, browser, and location you regularly used with the account. Use a secure internet connection and avoid a public or shared device. If you still have the account open on another phone, tablet, browser, or Google app, do not sign out. That existing session may help you review alerts or confirm that the account is yours.
Verify That the Account Belongs to You
Google may ask for information or send a prompt to a sign-in or recovery method already associated with the account. Possible checks can include a password you remember, a prompt on a familiar device, or access to a recovery phone or email. The available checks are determined by Google; no outside person can choose or bypass them.
Answer as accurately as you can. If asked for an earlier password, enter the most recent one you clearly remember rather than making repeated guesses. Keep the following details ready:
- The exact account email address and any spelling details.
- A previous password you genuinely used.
- Access to familiar devices that may still be signed in.
- The recovery phone or recovery email you previously added.
- Security alerts sent to your devices or recovery contact.
Complete recovery from your usual browser and normal location when possible. These familiar signals may help Google evaluate the request, but they do not guarantee access. If a hacker changed your Google Account password, never enter a verification code into a form opened from an unexpected message.
What to Do If Recovery Fails
If verification is unsuccessful, review the email address for typing errors and restart through the official recovery option on {site}. Use a familiar device and answer every question you can. Do not submit made-up details. Repeated random answers can make it harder to provide consistent information.
If the account cannot be found, use Google’s username-recovery option and supply the requested recovery information. The problem may be an incorrect address rather than a deleted account. If the recovery choices show a phone number or email you do not recognize, the attacker may have changed them. Continue only through the alternatives Google displays.
Check a previously configured recovery inbox, including its spam or junk folder, for security notices about changes to the password or recovery information. Use actions inside a genuine Google security notice only after confirming the sender and message are authentic.
For a work, school, or organization-managed account, contact the organization’s administrator through a contact method you already trust. Consumer recovery instructions may not control an account managed by an employer or school.
Google does not guarantee restoration, and no unofficial support agent can override its verification system. If recovery remains unavailable, preserve any signed-in session and continue using only Google’s displayed recovery choices and official help material.
Check and Secure the Recovered Account
Once access returns, treat the account as compromised until you have reviewed it. Start with the Security section of the Google Account and examine recent security activity. Mark sign-ins or changes you did not make as unfamiliar and follow the protective prompts.
- Review all signed-in devices and sessions. Sign out devices, browsers, and sessions you do not recognize or no longer control.
- Check the recovery phone, recovery email, alternate addresses, and other sign-in methods. Remove unfamiliar entries and restore your own information.
- Review apps and services with account access. Remove access for anything you do not recognize, no longer use, or did not approve.
- Inspect Gmail settings for unknown forwarding addresses, filters, blocked addresses, mail delegation, and automatic replies. An attacker may use these settings to copy messages or hide security warnings.
- Look for unfamiliar changes to your name, profile, sharing settings, stored files, sent mail, and deleted mail.
Also inspect browser extensions and apps on devices used with the account. Remove unfamiliar software, install system and browser updates, and run the device’s trusted security scan. Changing a password will not fully solve the problem if malicious software can capture the new one.
Change Credentials and Strengthen Sign-In Security
Create a long, unique password that has never been used for another account. Do not make a small variation of the stolen password. A password manager can generate and store a strong password so you do not have to reuse one.
If the compromised password was reused elsewhere, change it on those accounts too, beginning with your recovery email and other sensitive accounts. Secure the recovery email with its own unique password and multi-step sign-in protection. Otherwise, an attacker who controls that inbox may be able to interfere with future recovery.
Turn on Google’s available multi-step sign-in protection and review every enrolled method. Remove methods you do not recognize. Depending on what Google offers for your account and device, stronger choices may include prompts, passkeys, or security keys. Save any backup options in a private place that an attacker cannot reach.
Confirm that your recovery phone and email belong to you and are current. Review security notifications promptly, especially after a Google account password changed by hacker activity.
Avoid Impersonation and Recovery Scams
People searching phrases such as “google account hacked password changed,” “my google account was hacked password changed,” or “hacker changed my Google Account password” may encounter impostors. Scammers often claim they can recover a Google Account after the password changed, bypass verification, or connect you with a special representative.
Never give anyone your current or previous passwords, backup codes, verification codes, passkeys, screen-sharing access, or remote control of your device. A code is meant only for the official prompt you started. Google’s recovery questions should be answered within Google’s own process, not by message, phone call, social-media chat, or an unofficial form.
If someone contacts you unexpectedly, creates urgency, or promises a guaranteed result, stop communicating. Do not approve a sign-in prompt you did not initiate. Anyone asking how to recover a hacked Google Account password changed by an attacker should rely on the official recovery flow and keep every credential private.