Skip to content

Famous Hacks Throughout History: Key Incidents

pexels-tima-miroshnichenko-5380664

Although it hasn’t always been called hacking, breaking into systems that you aren’t supposed to have access to is as old as humans themselves. When we think of hacking in a modern sense, we can trace its roots back to the beginning of the twentieth century.

What are some of the most well-known hacks throughout history, and how much damage did they cause? Here are the 15 most famous hacks of all time.

The first public hack

The first public record of hacking that we have dates back to 1903. Italian inventor and electrical engineer Guglielmo Marconi invented wireless telegraphy technology. It was supposed to be secure. At a public demonstration of this technology, a magician and inventor named Nevil Maskelyne hacked into the system and sent insulting messages in Morse code to the auditorium’s projector.

Cracking the Enigma-machine

Hacking was around even before the 1950s and 1960s. It wasn’t as ubiquitous. That’s why a major event like Alan Turing, Gordon Welchman, and Harold Keen developing the Bombe in 1939 to crack the Enigma-machine-encrypted messages sent by Germany during World War II was such a big deal.

The Cap’n Crunch hack

In 1972, John T. Draper figured out he could use a whistle from a Cap’n Crunch cereal box to hack into AT&T’s systems to make free calls. The whistle gave off a 2600-hertz pitch, which matched the exact tone needed to gain internal authorization at AT&T. Draper. Other “phone phreaks” — people who hack and tinker with telephone lines and systems — also used a device called a blue box to emit certain tones that would control the phone network. For the whistle hack, Draper gained the moniker Captain Crunch and has become a well-known figure in the hacking and security world.

The 1980s

In the 1980s, hacking started becoming more mainstream. Major news outlets covered cyberattacks and hacking events. The decade saw the birth of some of the most famous (and infamous) hacking groups. The hacking highlights from this decade include:

  • Captain Zap: In 1981, Ian Murphy, also known as Captain Zap, broke into AT&T’s computers and modified the clocks that managed billing rates so people making calls at midday paid late-night rates and vice versa. For this hack, Murphy became the first known hacker to be tried and convicted as a felon.
  • FBI acknowledges white hat hacking: Following a security breach of the National CSS (NCSS), the FBI acknowledged the usefulness of hackers in helping to resolve the issue. A New York Times story covering the incident referred to hackers as a “recognized asset in the computer industry,” letting the world know that white hat hacking has a definitive place in IT.
  • The introduction of the Trojan horse: Career computer scientist Ken Thompson mentions the infamous virus known as a Trojan horse for the first time in his Turing Award lecture in 1983.
  • Cult of the Dead Cow is formed: The Cult of Dead Cow, or cDc, is a famous hacking and media group known for “hacktivist” exploits. The group formed in 1984 and was one of several well-known hacking organizations that formed in the 1980s.
  • The Computer Fraud and Abuse Act: In 1986, Congress passed the Computer Fraud and Abuse Act, one of the first major pieces of legislation to address cybercrime and hacking. The law made it a crime to break into computer systems.

The first FBI most wanted hacker

Cap’n Crunch may have been the first person arrested for hacking, but the honor of the first hacker on the FBI’s ‘Most Wanted’ list goes to Kevin Mitnick. Starting his hacking career in 1979, Mitnick was finally caught by the FBI on February 15, 1995. Not only was he the first hacker to make the Most Wanted list, but he was also the first-ever to be convicted of gaining access to an interstate computer network for criminal purposes. A master of social engineering, Mitnick was charged with stealing $1 million worth of sensitive data.

The Melissa Virus

The Melissa worm was introduced in 1999 and was the first virus that made people worry about being hacked in everyday life. Up until that point, individuals hadn’t typically been the targets of hackers. David L. Smith changed that when he created a virus and disguised it as a Microsoft Word program. When opened, it would resend itself to the first 50 people in the victim’s address book. The Melissa virus ended up compromising 20% of all the world’s computers before Intel and Microsoft could solve the problem.

The NASA and DoD hacks

In 1999, 15-year-old hacker Jonathan James and 35-year-old hacker Scot Gary McKinnon hacked NASA and the US Department of Defense (DoD). The first was James, who breached NASA’s systems and compromised the life support systems on the International Space Station (ISS). McKinnon was next, hacking into 16 computers belonging to NASA and 81 computers belonging to other parts of the DoD. Both hackers caused significant damage that required more than $500,000 (USD) to repair.

The cyberwar in Estonia

In 2007, the government of Estonia suffered three weeks of repeated distributed denial-of-service (DDoS) attacks that nearly brought down its entire IT infrastructure. It started with Estonian political parties and government agencies and eventually spread to news outlets, media websites, schools, universities, businesses, and the worst — the banking sector. At this time, 97% of Estonia’s banking transactions were online. Because these DDoS attacks were so crippling to multiple industries in Estonia, they’re not seen as just regular DDoS attacks but one of the first instances of cyber warfare.

Stuxnet

The Stuxnet incident was another hacking episode with geopolitical implications. It was a worm that destroyed one-fifth of Iran’s nuclear centrifuges in 2009. It also infected five organizations that were supplying centrifuges. Because of the sophistication of Stuxnet, some experts believe a country or nation-state was behind it.

PlayStation Network hack

In 2011, hackers caused a month-long outage of the PlayStation Network, costing Sony $171 million (USD). The LulzSec hack exposed 77 million users’ real names, postal addresses, countries, email addresses, dates of birth, and PlayStation Network sign-in credentials.

Target

In 2013, retail giant Target announced that their network was compromised and 40 million credit and debit card accounts were exposed. In the years after, hackers would start setting up “card shops” with stolen credit and debit card information with cloned cards to empty users’ bank accounts.

North Korea’s Sony Pictures attack

In 2014, Sony suffered another cyber attack, but this time for Sony Pictures. North Korea really didn’t want the film The Interview, a comedy about an assassination plot against leader Kim Jong-un, to come out. So North Korean hackers destroyed Sony’s internal network, leaked studio data, and released private emails online. This incident showed cybersecurity experts what North Korean hackers were capable of, and the country has become one of the most active in cyber-espionage today.

The Democratic National Committee

The 2016 hack of DNC chairman John Podesta made headlines around the U.S. presidential election that year. It’d still talked about years later. The result of the hack was the publication of emails and documents from the DNC’s servers, which many believe disrupted Hillary Clinton’s presidential campaign. It also exposed the personal information of several politicians.

Equifax

We’re still not sure who or what was behind the 2017 Equifax hack, but the breach exposed the financial data of more than 145.5 million people in the U.S., U.K., and Canada. What we do know is that the hack of one of three major consumer credit reporting agencies in the U.S. was caused by Equifax failing to patch a critical server.

Yahoo

The Yahoo! hacks that spanned 2014-2016 are considered one of the largest data breaches to date. By the time Yahoo! totaled up all the damage in October 2017, the number of estimated user accounts affected was 3 billion.

Snowden leaks

The 2013 revelations of former NSA employee Edward Snowden — that the U.S. and its Five Eyes partners had a global surveillance network — encouraged countries like Russia and China to ramp up their own cyber-espionage efforts.

Celebgate

In 2014, a small group of hackers tricked celebrities into entering their Gmail or iCloud passwords through spear-phishing. With access to the accounts, hackers revealed nude images and videos of these stars online. Celebgate, also known as The Fappening, reiterates the importance of paying attention to bogus password reset emails.

Ashley Madison

The 2015 Ashley Madison data breach was unlike other breaches because of the nature of the site. It was a dating website for people wanting to have an affair. After the leak, some users encountered extortion attempts and some even committed suicide. While it may not have been one of the biggest data breaches of the 2010s, it was a very damaging data breach for users whose information was exposed.

Stuxnet and Shamoon

The 2010 Stuxnet attack wasn’t against individuals, but it was still a huge cybersecurity event. Stuxnet revealed that the U.S. and Israel were using sophisticated malware to sabotage Iran’s nuclear enrichment program. Why was Stuxnet such a big deal? It was the first time, outside of a movie, that malware was used to destroy physical objects, in this case Iran’s uranium-enrichment centrifuges.

It also sparked Shamoon two years later, when the Iranian government created their own cyber-weapon. Shamoon destroyed 35,000 workstations on the Saudi Aramco network, the national oil company of Saudi Arabia.

These incidents in the early years of the decade upped the ante with the use of cyberwarfare by nation-states.

Mirai

The 2010s was the decade of IoT (Internet of Things) devices — and IoT hacks to go along with them. 2016 saw the introduction of Mirai, a malware that targets IoT devices. Mirai launches DDoS attacks and quickly became one of the most well-known malware globally. After Mirai, many people realized that their thermostats conveniently connected to the Internet might pose.

MyFitnessPal

Retailer Under Armour suffered a data breach on its food and nutrition app, MyFitnessPal in 2018. The breach exposed the usernames, passwords, and associated email addresses of 150 million users.

Marriott

In 2018, Marriott hotels announced a data breach of their Starwood properties, totaling 383 million hacked records. Names, addresses, and passport numbers of hotel guests were accessed due to the Starwood guest reservation system. Marriott confirmed that the hacking may have been ongoing since 2014.

The U.S. Office of Personnel Management

The OPM was attacked by Chinese hackers in 2015 in a hack sanctioned by the Chinese government. They got away with 21.5 million records of U.S. government employees. A simultaneous attack on Anthem resulted in 78.8 stolen medical records. With the two hacks’ combined data, the Chinese government could have identified and exposed CIA agents.

Aadhaar

Aadhaar is the national ID database of India. It contains highly sensitive information of the Indian citizens registered to it, like fingerprints and iris scans. Indians use the biometric data saved in Aadhaar to open bank accounts, buy SIM cards, sign up for public utilities, receive state financial assistance, and several other important services. In March 2018, the Aadhaar system was hacked and 550 million records were lost. All registered Indians were affected and identity numbers and bank info went up for sale on WhatsApp.

Hacking’s long history

As you can see, hacking goes back a long time. It’s developed rapidly and will continue to do so, as long as we have reasons to keep the information confidential. Hackers are consistently adapting with the times and so should you. Be sure to check out our other helpful articles to stay secure. 

Related Articles

All
  • All
  • Easy Prey Podcast
  • General Tech Topics, News & Emerging Trends
  • Home Computing to Boost Online Performance & Security
  • IP Addresses
  • Networking Basics: Learn How Networks Work
  • Online Privacy Topics to Stay Safe in a Risky World
  • Online Safety
  • Uncategorized
Danny Funt talks about online sports betting and the dangers of the industry.

Online Sports Betting: Harmless Fun or Exploiting Fans?

You’ve almost certainly seen the ads somewhere. Make money from being a sports fan! Bet just a…

[Read More]
Mike Blumenthal talks about fake businesses on Google Maps - why they happen and how to avoid them.

Fake Businesses on Google Maps May Lead You Into a Scam

Imagine this: You’re coming home late one night, exhausted and ready to fall into bed, and as…

[Read More]
What Are Chatbots?

What is a Chatbot? Here are Some Basic Facts and Views.

Still, it’s clear that once explored and used, ordinary people discover how extremely useful, powerful, and different...

[Read More]
Using a VPN

Why Using a VPN is More Important Than Ever When You’re Online

The VPN does one thing primarily and does it well. The main trick a VPN does when...

[Read More]
Simple. Secure. Sign in. ID.me

What is ID.me? One Day, You Might Need to Know.

If a friend asked you, what is ID.me, would you be able to answer? You really should,...

[Read More]
Jay Jones talks about job opportunity scams.

Job Opportunity Scams: Beware If You’re Looking for Work!

Getting a message from a recruiter when you’re looking for work seems like a good thing. But…

[Read More]