- Timeline of computer security hacker history
This is a timeline of computer security hacker history. Hacking and
system cracking appeared with the first electroniccomputer s. Below are some important events in the history of hacking and cracking.1970s
1971
* John T. Draper (later nicknamed Captain Crunch), and his friend Joe Engressia and
blue box phone phreaking hits the news with anEsquire Magazine feature storyDavid Price: [http://www.counterpunch.org/price06302008.html Blind Whistling Phreaks and the FBI's Historical Reliance on Phone Tap Criminality]CounterPunch , June 30, 2008] .1980s
1981
*
Chaos Computer Club forms inGermany .1982
*
The 414s break into 60 computer systems at institutions ranging from the Los Alamos Laboratories to Manhattan'sMemorial Sloan-Kettering Cancer Center . [http://www.time.com/time/magazine/article/0,9171,949797-1,00.html The 414 Gang Strikes Again, Aug 29 1983, Time magazine] ] The incident appeared as the cover story ofNewsweek with the title "Beware: Hackers at play", ["Beware: Hackers at play", Newsweek, September 5, 1983, pp. 42-46,48] possibly the first mass-media use of the term "hacker" in the context of computer security. As a result, theU.S. House of Representatives held hearings on computer security and passed several laws [David Bailey, "Attacks on Computers: Congressional Hearings and Pending Legislation," sp, p. 180, 1984 IEEE Symposium on Security and Privacy, 1984.] .1983
* The group KILOBAUD is formed in February, kicking off a series of other hacker groups which form soon after.
* The movie "WarGames " introduces the wider public to the phenomenon of hacking and creates a degree of mass paranoia of hackers and their supposed abilities to bring the world to a screeching halt by launching nuclear ICBM's.
*The 414s are caught and investigated by theFBI . Although most members are not charged with a crime, they gain widespread media attention [Citation|newspaper=Detroit Free Press |year=1983|date=September 27, 1983] [Citation|last=Elmer-DeWitt|first=Philip|title=The 414 Gang Strikes Again|newspaper=Time magazine |pages=p. 75|year=1983|date=August 29, 1983|url=http://www.time.com/time/magazine/article/0,9171,949797,00.html] , eventually becoming a cover story of "Newsweek " entitled "Beware: Hackers at play". [Citation|title=Beware: Hackers at play|newspaper=Newsweek |pages=pp. 42-46,48|year=1983|date=September 5, 1983]
* TheU.S. House of Representatives begins hearings on computer security hacking. [cite web|publisher=Washington Post|url=http://www.washingtonpost.com/wp-dyn/articles/A50606-2002Jun26.html|year=2002|accessdate=2006-04-14|title=Timeline: The U.S. Government and Cybersecurity]
* In hisTuring Award lecture,Ken Thompson mentions "hacking" and describes a security exploit that he calls a "Trojan horse". [cite conference|first=Ken|last=Thompson|title=Reflections on Trusting Trust|booktitle=1983 Turing Award Lecture|publisher=ACM|date=October 1983|url=http://www.acm.org/awards/article/a1983-thompson.pdf|format=PDF ]1984
* Someone calling himself
Lex Luthor founds the Legion of Doom. Named after a Saturday morning cartoon, the LOD had the reputation of attracting "the best of the best" — until one of the most talented members calledPhiber Optik feuded with Legion of Doomer Erik Bloodaxe and got 'tossed out of the clubhouse'. Phiber's friends formed a rival group, theMasters of Deception .
* TheComprehensive Crime Control Act gives the Secret Service jurisdiction overcomputer fraud .
* CULT OF THE DEAD COW forms inLubbock, Texas and begins publishing its ezine.
* The hacker magazine "2600 " begins regular publication, right when TAP was putting out its final issue. The editor of "2600", "Emmanuel Goldstein " (whose real name is Eric Corley), takes his handle from the leader of the resistance inGeorge Orwell 's 1984. The publication provides tips for would-be hackers and phone phreaks, as well as commentary on the hacker issues of the day. Today, copies of "2600" are sold at most large retail bookstores.
* The firstChaos Communication Congress , the annual European hacker conference organized by theChaos Computer Club , is held inHamburg 1985
* KILOBAUD is re-organized into The
P.H.I.R.M. , and beginssysop ping hundreds ofBBS s through-out theUnited States ,Canada , andEurope .
* The online 'zinePhrack is established.
*The Hacker's Handbook is published in the UK.1986
* After more and more break-ins to
government and corporate computers, Congress passes theComputer Fraud and Abuse Act , which makes it a crime to break into computer systems. The law, however, does not cover juveniles.
* Arrest of a hacker who calls himselfThe Mentor . He published a now-famous treatise shortly after his arrest that came to be known as theHacker's Manifesto in the e-zine entitledPhrack . This still serves as the most famous piece of hacker literature and is frequently used to illustrate the mindset of hackers.
* AstronomerClifford Stoll plays a pivotal role in tracking down hackerMarkus Hess , events later covered in Stoll's 1990 book "The Cuckoo's Egg". [cite book
title=The cuckoo's egg
author=Cliff Stoll
publisher=Doubleday
location=New York
year=1989
isbn=0-370-31433-6 ]1987
*
Decoder magazine begins inItaly .
* TheChristmas Tree EXEC "worm" causes major disruption to theVNET ,BITNET and EARN networks. [Burger, R.: "Computer viruses - a high tech disease", "Abacus/Data Becker GmbH" (1988), ISBN 1-55755-043-3]1988
* The "
Morris Worm ". Graduate studentRobert T. Morris, Jr. ofCornell University launches a worm on the government'sARPAnet (precursor to the Internet). [Spafford, E.H.: "The Internet Worm Program: An Analysis", "Purdue Technical Report CSD-TR-823" (undated)] [Eichin, M.W. and Rochlis, J.A.: "With Microscope and Tweezers: An Analysis of the Internet Virus of November 1988", "MIT"(1989)] The worm spreads to 6,000 networked computers, clogging government and university systems. Morris is dismissed from Cornell, sentenced to three years probation, and fined $10,000.
*First National Bank of Chicago is the victim of $70-million computer theft.
* The Computer Emergency Response Team (CERT) is created byDARPA to addressnetwork security .
* TheFather Christmas (computer worm) spreads overDECnet networks.1989
*
Jude Milhon (aka St Jude) andR. U. Sirius launchMondo 2000 , a major '90s tech-lifestyle magazine, inBerkeley, California .
* The politically motivated WANK worm spreads overDECnet .1990s
1990
*
Operation Sundevil introduced. After a prolonged sting investigation, Secret Service agents swoop down on organizers and prominent members of BBSs in 14 U.S. cities including the Legion of Doom, conducting early-morning raids and arrests. The arrests involve and are aimed at cracking down on credit-card theft and telephone and wire fraud. The result is a breakdown in the hacking community, with members informing on each other in exchange for immunity. The offices ofSteve Jackson Games are also raided, and the role-playing sourcebookGURPS Cyberpunk is confiscated, possibly because the government fears it is a "handbook for computer crime". Legal battles arise that prompt the formation of theElectronic Frontier Foundation , including the trial of Knight Lightning.
* Australian federal police tracking "Realm" members "Phoenix", "Electron" and "Nom" are the first in the world to use a remote data intercept to gain evidence for a computer crime prosecution. [cite book | author=Bill Apro & Graeme Hammond | title=Hackers: The Hunt for Australia’s Most Infamous Computer Cracker | year= 2005 | id=ISBN 1-74124-722-5 | publisher= Five Mile Press ]1992
* Release of the movie "Sneakers", in which security experts are blackmailed into stealing a
universal decoder forencryption system s.
*MindVox opens to the public.
* Bulgarian virus writerDark Avenger wrote 1260, the first known use ofpolymorphic code , used to circumvent the type of pattern recognition used byAnti-virus software , and nowadays alsointrusion detection system s.Fact|date=August 20081993
* The first
DEF CON hacking conference takes place in Las Vegas. The conference is meant to be a one-time party to say good-bye to BBSs (now replaced by the Web), but the gathering is so popular it becomes an annual event.
*AOL gives its users access toUSENET , precipitatingEternal September .1994
* Summer:
Russia n crackers siphon $10 million from Citibank and transfer the money to bank accounts around the world.Vladimir Levin , the 30-year-oldringleader , uses his work laptop after hours to transfer the funds to accounts inFinland andIsrael . Levin stands trial in theUnited States and is sentenced to three years in prison. Authorities recover all but $400,000 of the stolen money.
* Hackers adapt to emergence of theWorld Wide Web quickly, moving all their how-to information and hacking programs from the old BBSs to new hackerWeb site s.
*AOHell is released, afreeware application that allows a burgeoning community of unskilledscript kiddie s to wreak havoc onAmerica Online . For days, hundreds of thousands of AOL users find their mailboxes flooded with multi-megabyteemail bomb s and their chat rooms disrupted with spam messages.1995
* The movies "The Net" and "Hackers" are released.
1996
* Hackers alter Web sites of the
United States Department of Justice (August), theCIA (October), and theU.S. Air Force (December).
* Canadian hacker group,Brotherhood , breaks into theCanadian Broadcasting Corporation .
* TheU.S. General Accounting Office reports that hackers attempted to break into Defense Department computer files some 250,000 times in 1995 alone. About 65 percent of the attempts were successful, according to the report.
* The MP3 format gains popularity in the hacker world. Many hackers begin setting up sharing sites via FTP, Hotline, IRC and USEnet.1997
* A 15-year-old
Croatia n youth penetrates computers at aU.S. Air Force base inGuam [http://www.nap.edu/html/trust/trust-1.htm] .
* December: Information Security publishes first issue.
* First high-profile attacks on Microsoft'sWindows NT operating system [http://news.cnet.com/Hackers-jam-Microsofts-site/2100-1023_3-200788.html] [http://www.byte.com/art/9711/sec6/art3.htm]
* In response to the MP3 popularity, the Recording Industry Association of America begins cracking down on FTPs [http://www.cnn.com/TECH/computing/9803/26/saltzman_mp3/index.html] . The RIAA begins a campaign of lawsuits shutting down many of the owners of these sites including the more popular ripper/distributors The Maxx (Germany, Age 14), Chapel976 (USA, Age 15), Bulletboy (UK, Age 16), Sn4rf (Canada, Age 14) and others in their young teens via their ISPs. Their houses are raided and their computers and modems are taken. The RIAA fails to cut off the head of the MP3 beast and within a year and a half, Napster is released.1998
* January:
Yahoo! notifies Internet users that anyone visiting its site in recent weeks might have downloaded alogic bomb andworm planted by hackers claiming a "logic bomb" will go off if Mitnick is not released from prison.
* January:Anti-hacker runs duringSuper Bowl XXXII
* February: TheInternet Software Consortium proposes the use ofDNSSEC (domain-name system security extensions ) to secureDNS server s.
* June: Information Security publishes its first annualIndustry Survey , finding that nearly three-quarters of organizations suffered a security incident in the previous year.
* October: "U.S. Attorney General Janet Reno announcesNational Infrastructure Protection Center ."1999
*
Software security goes mainstream In the wake of Microsoft's Windows 98 release, 1999 becomes a banner year for security (and hacking). Hundreds of advisories and patches are released in response to newfound (and widely publicized) bugs in Windows and other commercial software products. A host of security software vendors release anti-hacking products for use on home computers.
* TheElectronic Civil Disobedience project , an onlinepolitical performance -art group , attacks the Pentagon calling itconceptual art and claiming it to be a protest against the U.S. support of the suppression of rebels in southernMexico by the Mexican government. ECD uses theFloodNet software to bombard its opponents with access requests.
* U.S. PresidentBill Clinton announces a $1.46 billion initiative to improve governmentcomputer security . The plan would establish a network of intrusion detection monitors for certain federal agencies and encourage the private sector to do the same.
*January 7 : an international coalition of hackers (including CULT OF THE DEAD COW, "2600 " 's staff, "Phrack "'s staff,L0pht , and theChaos Computer Club ) issued a joint statement ( [http://www.cultdeadcow.com/news/statement19990107.html] ) condemning the LoU's declaration of war. The LoU responded by withdrawing its declaration.
* March: TheMelissa worm is released and quickly becomes the most costly malware outbreak to date.
* July: CULT OF THE DEAD COW releasesBack Orifice 2000 atDEF CON
* August:Kevin Mitnick , "the most wanted man in cyberspace",Who|date=August 2008 sentenced to 5 years, of which over 4 years had already been spent pre-trial including 8 months solitary confinement.
* September:Level Seven hacks [http://www.usembassy-china.gov The US Embassy in China's Website] and places racist, anti-government slogans on embassy site in regards to1998 U.S. embassy bombings . [http://www.cnn.com/TECH/computing/9909/08/hack.folo]
* October:American Express introduces the "Blue"smart card , the industry's first chip-based credit card in the US.2000s
2000
* May: The
ILOVEYOU worm, also known as VBS/Loveletter and Love Bug worm, is a computer worm written in VBScript. It infected millions of computers worldwide within a few hours of its release. It is considered to be one of the most damaging worms ever.2001
* Microsoft becomes the prominent victim of a new type of hack that attacks the
domain name server . In these denial-of-service attacks, the DNS paths that take users to Microsoft's Web sites are corrupted.
* February: A Dutch cracker releases theAnna Kournikova virus, initiating a wave of viruses that tempts users to open the infected attachment by promising a sexy picture of theRussia ntennis star.
* April: FBI agents trick two into coming to the U.S. and revealing how they were Hacking U.S. banks [http://www.theregister.co.uk/2002/10/07/fbi_sting_snares_top_russian/] .
* May:
** Spurred by elevated tensions inSino-American diplomatic relations , U.S. and Chinese hackers engage in skirmishes of Web defacements that many dub "The Sixth Cyberwar ".
* July: Russian programmerDmitry Sklyarov is arrested at the annual Def Con hacker convention. He is the first person criminally charged with violating the Digital Millennium Copyright Act (DMCA).
* August:Code Red worm , infects tens of thousands of machines.2002
* January:
Bill Gates decrees that Microsoft willsecure its products and services, and kicks off a massive internaltraining andquality control campaign.
* May: Klez.H, a variant of the worm discovered in November 2001, becomes the biggestmalware outbreak in terms of machines infected, but causes little monetary damage.
* June: The Bush administration files a bill to create theDepartment of Homeland Security , which, among other things, will be responsible for protecting the nation's critical ITinfrastructure .
* August: ResearcherChris Paget publishes a paper describing "shatter attack s", detailing how Windows' unauthenticatedmessaging system can be used to take over a machine. The paper raises questions about how securable Windows could ever be.
* October: TheInternational Information Systems Security Certification Consortium - (ISC)2 - confers its 10,000thCISSP certification.2003
* March: CULT OF THE DEAD COW and
Hacktivismo are given permission by theUnited States Department of Commerce to export software utilizing strong encryption.
*December 18 :Milford Man pleas guilty to hacking.2004
* March:
Myron Tereshchuk is arrested for attempting to extort $17 million fromMicropatent .2005
*
September 15 : An unnamed teenager is sentenced to 11 months for gaining access to T-Mobile USA's network and exploiting Paris Hilton's Sidekick.
*November 3 :Jeanson James Ancheta , whom prosecutors say was a member of the "Botmaster Underground", a group ofscript kiddie s mostly noted for their excessive use of bot attacks and propagating vast amounts of spam, was taken into custody after being lured to FBI offices in Los Angeles. cite web |date=2005-11-04|url = http://www.vnunet.com/vnunet/news/2145579/fbi-arrest-botnet-master|title = FBI sting nets botnet hacker|format = HTML |publisher = vnunet.com| accessdate = 2008-09-26 | last=Iain Thomson |quote=]2006
* January: One of the few worms to take after the old form of malware, destruction of data rather than the accumulation of zombie networks to launch attacks from, is discovered. It had various names, including Kama Sutra (used by most media reports), Black Worm, Mywife, Blackmal, Nyxem version D, Kapser, KillAV, Grew and CME-24. The worm would spread through e-mail client address books, and would search for documents and fill them with garbage, instead of deleting them to confuse the user. It would also hit a web page counter when it took control, allowing the programmer who created it as well as the world to track the progress of the worm. It would replace documents with random garbage on the third of every month. It was hyped by the media but actually affected relatively few computers, and was not a real threat for most users.
* February:Direct-to-video film "The Net 2.0 " is released, as a sequel to "The Net", following the same plotline, but with updated technology used in the film, using different characters, and different complications. The director of "The Net 2.0", Charles Winkler, is son of Irwin Winkler, the director of "The Net".
* May: Jeanson James Ancheta receives a 57 month prison sentence, [http://www.techweb.com/wire/security/187201459] and is ordered to pay damages amounting to $15,000.00 to the Naval Air Warfare Center in China Lake and the Defense Information Systems Agency, for damage done due to DDoS attacks and hacking. Ancheta also had to forfeit his gains to the government, which include $60,000 in cash, a BMW, and computer equipment [http://www.techweb.com/wire/security/187201459] .
* May: Largest Defacement in Web History is performed by the Turkish hackeriSKORPiTX who successfully hacked 21,549 websites in one shot. [http://www.zone-h.org/component/option,com_oldstuff/Itemid,31/task,news/id,206009//]
* September: Viodentia releases FairUse4WM tool which would remove DRM information off WMA music downloaded from music services such as Yahoo Unlimited, Napster, Rhapsody Music and Urge.
* October: Jesus Oquendo releases [http://www.infiltrated.net/asteroid/ Asteroid] , a SIP Denial of Service testing tool. It broke all versions of Asterisk until 1.2.13. Asteroid is also known to affect certain SIP Softphones, SIP Phones and possibly other products using the SIP protocol. It was used in Henning Schulzrinne's Columbia University seminars. See MITRE CVE-2006-5444 and CVE-2006-54452007
* May 17:
Estonia recovers from massive denial-of-service attack [ [http://www.networkworld.com/news/2007/051707-estonia-recovers-from-massive-denial-of-service.html Estonia recovers from massive denial-of-service attack - Network World ] ]* June 13:
FBI Operation Bot Roast finds over 1 million botnet victims [ [http://www.networkworld.com/community/node/16193 FBI: Operation Bot Roast finds over 1 million botnet victims |NetworkWorld.com Community ] ]* June 21: A
spear phishing incident at theOffice of the Secretary of Defense steals sensitive U.S. defense information, leading to significant changes in identity and message-source verification at OSD.cite news
first = Robert
last = McMillan
url = http://www.infoworld.com/article/07/06/21/Pentagon-shuts-down-systems-after-cyberattack_1.html
title = Pentagon shuts down systems after cyberattack
work =InfoWorld
publisher =IDG
date =June 21 ,2007
accessdate = 2008-03-10] cite news
first = Jill R.
last = Aitoro
url = http://www.govexec.com/story_page.cfm?articleid=39456
title = Defense officials still concerned about data lost in 2007 network attack
work = Government Executive
publisher =National Journal Group
date =March 5 ,2008
accessdate = 2008-03-10]* August 11:
United Nations website hacked by Turkish Hacker Kerem125 [ [http://www.internethaber.com/news_detail.php?id=99151 BM'nin sitesi hacklendi |Haber'in Doğru Adresi, Haber, Yerel Haber, Siyaset Haberleri, Sondakika Haberleri, Gazeteler, Haberler ] ]* October 7:
Trend Micro website successfully hacked by Turkish hacker Janizary(a.k.a Utku) [ [http://www.crn.com/security/206903880 Trend Micro Victim Of Malicious Hack ] ]* November 29:
FBI FBI Operation Bot Roast II: 1 million infected PCs, $20 million in losses and 8 indictments [ [http://www.networkworld.com/community/node/22413?t51hb FBI 'Bot Roast II: 1 million infected PCs, $20 million in losses and 8 indictments |NetworkWorld.com Community ] ]2008
* January 18:
Project Chanology Anon attacks Scientology website servers around the world. Private documents are stolen from Scientology computers and distributed over the Internet* March 7: 20-something Chinese hackers claim to have gained access to the world's most sensitive sites, including
The Pentagon . They operate from a bare apartment on a Chinese island.cite news
url = http://edition.cnn.com/2008/TECH/03/07/china.hackers/index.html
title = Chinese hackers: No site is safe
publisher =CNN
date =March 7 ,2008
accessdate = 2008-03-07]ee also
*
List of convicted computer criminals References
Further reading
*cite book| title=Virus! The secret world of computer invaders that breed and destroy| author=Allan Lundell |year=1989| publisher=Wayne A. Yacco|isbn=0-8092-4437-3
*cite book| title=Out of the Inner Circle | author=Bill Landreth | publisher=Tempus Books of Microsoft Press | date=1989 [1985] | isbn=1-55615-223-X
*cite book | title=Beating the System: Hackers, phreakers and electronic spies | author=Owen Bowcott and Sally Hamilton | publisher=Bloomsbury | year=1990 | isbn=0-7475-05136
*cite book | title=The computer virus crisis | author=Philip Fites, Peter Johnston and Martin Kratz | publisher=Van Nostrand Reinhold | year=1989 | isbn=0-442-28532-0
*cite book | author=Bruce Sterling | title=The Hacker Crackdown: Law and disorder on the electronic frontier | publisher=Penguin | year=1992 | isbn=0-14-017734-5
*cite book | author=Steve Gold | title=Hugo Cornwall's New Hacker's Handbook | year=1989 | publisher=Century Hutchinson Ltd | isbn=0-7126-3454-1 | location=London
Wikimedia Foundation. 2010.