-
Use Cases
-
Resources
-
Pricing
The history of hacking traces the evolution of computer intrusion and exploration from early curiosity-driven experiments in the 1960s, through phone phreaking and legendary hacker groups of the 1980s-90s, to today's era of large-scale cybercrime, state-sponsored attacks, and ethical hacking. This timeline highlights pivotal events, notorious figures, and the ongoing battle between attackers and defenders that has shaped modern cybersecurity. More Less
1949
% complete
Computer pioneer John von Neumann presented a paper titled 'Theory and Organization of Complicated Automata', publicly laying the theoretical foundation that would later underlie computer viruses.
Image source: John von Neumann
Apr 1955
% complete
An April 1955 meeting of MIT's Tech Model Railroad Club, a group closely associated with early hacker culture, recorded remarks noting that 'Mr. Mathews' would be present, reflecting the club's role in the birth of hacking at MIT.
Image source: Tech Model Railroad Club
1957
% complete
Joe 'Joybubbles' Engressia, a blind seven-year-old boy with absolute pitch, discovered that whistling the fourth E above middle C (2600 Hz) would interfere with AT&T's automated telephone systems, inadvertently opening the door for phreaking.
Image source: Phreaking
1965
% complete
Mathews from MIT found a vulnerability in a CTSS (Compatible Time-Sharing System) running on an IBM 7094, one of the earliest documented exploitations of a time-sharing system.
Image source: Compatible Time-Sharing System
1967
% complete
IBM, through Science Research Associates, approached Evanston Township High School with an offer of four 2741 Selectric teletypewriter-based terminals with dial-up modem connectivity to an experimental system implementing an early version of APL. Students' informal network penetration efforts later helped harden security of one of the first publicly accessible networks.
Image source: APL (programming language)
1968
% complete
Following the high school project, Science Research Associates undertook to write a full APL system for the IBM 1500, modeling it after APL/360 and borrowing code from MAT/1500 where possible.
Image source: Science Research Associates
1981
% complete
Murphy broke into AT&T's computers in 1981 and changed the internal clocks that metered billing rates, allowing users to make calls at reduced rates.
Image source: Computer security
Jul 12, 1985
% complete
The FBI, Secret Service, Middlesex County NJ Prosecutor's Office and local law enforcement executed seven search warrants across New Jersey, seizing equipment from BBS operators and users for 'complicity in computer theft'. Known as the Private Sector Bust or 2600 BBS Seizure, it implicated sysops including Private Sector BBS, NJ Hack Shack, and Treasure Chest.
1986
% complete
Astronomer Clifford Stoll played a pivotal role in tracking down West German hacker Markus Hess, who had been selling access to US military systems to the KGB. The events were later covered in Stoll's 1990 book The Cuckoo's Egg.
1986
% complete
Robert Schifreen and Stephen Gold were convicted in the United Kingdom of accessing the Telecom Gold account belonging to the Duke of Edinburgh under the Forgery and Counterfeiting Act 1981 — the first conviction for illegally accessing a computer system.
1990
% complete
The Computer Misuse Act 1990 was passed in the United Kingdom, criminalising any unauthorised access to computer systems.
Image source: Computer Misuse Act 1990
Apr 2, 2002
% complete
Rafael Núñez (aka RaFa), a notorious member of the hacking group World of Hell, was arrested upon arrival at Miami International Airport for breaking into the Defense Information Systems Agency computer system in June 2001.
Image source: Richard Hell
Dec 14, 2012
% complete
Five members of the Norwegian hacker group Noria were arrested, allegedly suspected of hacking into the email account of militant extremist Anders Behring Breivik, who perpetrated the 2011 attacks in Norway.
Image source: Anders Behring Breivik
1984
% complete
The hacker magazine 2600 began regular publication just as TAP was putting out its final issue. Its editor, 'Emmanuel Goldstein' (real name Eric Corley), took his handle from the leader of the resistance in George Orwell's Nineteen Eighty-Four. Today, copies are sold at most large retail bookstores.
Image source: 2600: The Hacker Quarterly
1989
% complete
Sirius launched MONDO 2000, a major '90s tech-lifestyle magazine, in Berkeley, California, blending cyberculture, hacking, and counterculture themes.
Image source: Mondo 2000
Jan 7, 1999
% complete
An international coalition of hackers — including Cult of the Dead Cow, 2600's staff, Phrack's staff, L0pht, and the Chaos Computer Club — issued a joint statement (CRD 990107 - Hackers on planet earth against infowar) condemning the Legion of the Underground's declaration of war.
Jul 1999
% complete
In July, Cult of the Dead Cow released Back Orifice 2000, a remote administration tool, at DEF CON, sparking debate over dual-use hacking tools.
Image source: Back Orifice 2000
1992
% complete
Bulgarian virus writer Dark Avenger wrote 1260, the first known use of polymorphic code, designed to circumvent the pattern recognition used by antivirus software and nowadays also intrusion detection systems.
1996
% complete
The US General Accounting Office reported that hackers attempted to break into Defense Department computer files some 250,000 times in 1995 alone, with a success rate of about 65% and doubling annually.
Image source: United States Government Accountability Office
1999
% complete
In the wake of Microsoft's Windows 98 release, 1999 became a banner year for security and hacking, as software security went mainstream amid widespread vulnerabilities and exploits.
May 1999
% complete
Hackers defaced the US Embassy in China's website and placed racist, anti-government slogans on the embassy site in retaliation for the 1998 US bombing of the Chinese embassy in Belgrade.
Image source: Embassy of the United States, Beijing
Nov 2001
% complete
Nimda.H, a variant of the worm discovered in November 2001, became the biggest malware outbreak in terms of machines infected, though it caused little monetary damage.
Feb 2016
% complete
The 2016 Bangladesh Bank heist attempted to steal US$951 million from Bangladesh Bank using fraudulent SWIFT transfers, succeeding in getting $101 million — although some of this was later recovered.
Image source: Bangladesh Bank robbery
Jul 22, 2016 - Apr 2017
% complete
WikiLeaks published documents from the 2016 Democratic National Committee email leak, with the leaks ongoing until April 2017. The breach had involved hackers compromising servers and passing leaked information onward.
Image source: 2016 Democratic National Committee email leak
Oct 1, 2016 - Dec 31, 2016
% complete
Hackers stole international personal user data from Uber, including phone numbers, email addresses, and names of 57 million people, plus 600,000 driver's license numbers. The company concealed the breach rather than disclosing it promptly.
Image source: Joe Sullivan (Internet security expert)
Oct 2016
% complete
The 2016 Dyn cyberattack used a botnet of IoT devices infected with Mirai, conducted by hacktivist groups SpainSquad, Anonymous, and New World Hackers, reportedly in retaliation for Ecuador rescinding Internet access to WikiLeaks founder Julian Assange at their London embassy.
Image source: DDoS attacks on Dyn
Dec 2016
% complete
Yahoo! reported massive data breaches affecting more than 1 billion users, among the largest breaches ever disclosed at the time.
Image source: Yahoo data breaches
May 2017 - Jul 2017
% complete
From May to July 2017, attackers exploited a vulnerability in Equifax's systems, ultimately exposing sensitive personal and financial data of roughly 147 million people.
Jun 2017
% complete
The June 2017 Petya cyberattack spread rapidly worldwide, encrypting hard drives and disrupting corporations, ports, and government systems, particularly in Ukraine.
Image source: Petya (malware family)
Sep 2017
% complete
In September 2017, consulting giant Deloitte suffered a breach in which attackers accessed its global email server, exposing confidential client and internal information.
Image source: Deloitte
Nov 2019
% complete
A hack was conducted to support the 2019 Hong Kong protests during the Hong Kong police's siege of Polytechnic University, targeting government-linked systems.
Image source: 2019–2020 Hong Kong protests
Jul 2020
% complete
In July 2020, attackers used social engineering against Twitter employees to take over high-profile accounts, including Barack Obama and Elon Musk, promoting a bitcoin doubling scam that netted over $100,000.
Image source: 2020 Twitter account hijacking
Aug 2020
% complete
The website of Belarusian company 'BrestTorgTeknika' was defaced by a hacker using the pseudonym 'Queen Elsa', in support of the 2020–21 Belarusian protests. The site read 'Get Iced Iced already' and 'Free Belarus, revolution of our times', alluding to a slogan from the 2019 Hong Kong protests.
Image source: 2020–2021 Belarusian protests
Oct 2020
% complete
State security officials and American corporate security officers feared attacks were a prelude to hacking of election infrastructure during the 2020 elections, similar to incidents during the 2016 US elections and other Russian cyberattacks; no evidence emerged that election infrastructure was targeted in 2020.
Image source: Russian interference in the 2016 United States elections
Feb 2021
% complete
A computer technician in Yangon determined that a series of hacks were denial-of-service attacks, and that the group's motive was to protest the 2021 Myanmar coup.
Image source: 2021 Myanmar coup d'état
Apr 2021
% complete
Personal data of hundreds of millions of Facebook users was posted online. Facebook claimed the information was from a 2019 breach and had already taken mitigation measures, but declined to say whether it had notified affected users.
Image source: Facebook
Apr 2021
% complete
The Ivanti Pulse Connect Secure data breach involved unauthorized access to networks of high-value targets since at least June 2020 via CVE-2021-22893, across US defense, government, and financial organizations.
Image source: Ivanti
Sep 2021 - Oct 2021
% complete
In September and October 2021, the Epik data breach exposed more than 180 gigabytes of internal data from the domain registrar known for hosting far-right websites, released by the collective Anonymous.
Image source: 2021 Epik data breach
Oct 6, 2021
% complete
An anonymous 4chan user reportedly hacked and leaked the source code of Twitch, as well as information on how much the streaming service had paid to nearly 2.4 million streamers since August 2019.
Image source: Twitch (service)
Feb 2025
% complete
As of May 2026, the Bybit exchange hack remains the largest breach in the cryptocurrency sector by dollar value, with stolen funds attributed to state-sponsored actors.
Or browse the full history timeline directory, with more than 2,000 topics.
This History of Hacking timeline was generated with the help of AI, using information found on the internet.
We work hard to keep these timelines accurate, but mistakes do get through. If you spot one, email us at [email protected] and we'll fix it for future visitors.
Generate yours with AI or build it from scratch, for free.
Export your timeline, add your own events, edit or remove AI-generated events, and much more
No credit card required.
Cancel anytime.
Cancel anytime.
You can create an unlimited number of timelines with up to 10 events on each one, customize how they look, export them to PDF, PNG, PowerPoint, CSV, and Excel, and share them with a link. Paid plans raise the event limit and add features like spreadsheet imports and collaborators.
Yes. You can cancel your subscription from your account page at any time, and you will not be charged again. Your subscription stays active for the rest of the period you already paid for.
Yes. We will email you a reminder before the annual renewal, and we will also email you a receipt.
Yes. You can email us within 15 days of any payment, and we will issue you a full refund.
Check out our pricing docs or send us an email anytime: [email protected].