1837
Francois and Joseph Blanc hijacked the French optical telegraph network by bribing operators to insert deliberate backspace/error codes into stock market transmissions. The scheme ran for roughly two years before being exposed in 1836, making it the first documented attack combining an insider, a covert channel, and a financial network.
1844
Samuel Morse transmitted the first message ("What hath God wrought") over the Baltimore–Washington line on May 24, 1844, exposing physical wiretapping along unencrypted DC lines almost immediately.
1876
Alexander Graham Bell was granted US Patent 174,465 for the telephone, introducing analog voice circuits that immediately opened new attack surfaces for inductive and galvanic eavesdropping.
1891
Undertaker Almon Strowger patented the first automated stepping switch after suspecting manual telephone operators were diverting his business calls to a competing undertaker.
1903
Illusionist and wireless pioneer Nevil Maskelyne intercepted and injected sarcastic Morse code insulting Guglielmo Marconi during a live demonstration at the Royal Institution in London, proving that open radio channels lacked origin authentication.
1957
Seven-year-old blind boy Joe Engressia discovered that whistling an exact 2600 Hz pitch into a receiver reset AT&T toll trunk lines, founding the phone-phreaking movement.
1964
John Draper ("Captain Crunch"), Steve Wozniak, Steve Jobs and others built Blue Boxes that emitted 2600 Hz plus MF digit tones to make free global calls, industrializing the SF signaling flaw.
1972
Ron Rosenbaum published 'Secrets of the Little Blue Box' in Esquire, exposing the technical mechanics of 2600 Hz phone phreaking, Captain Crunch, and homebrew Blue Box construction to a global audience.
1978
Phreakers engineered specialized Red Boxes simulating payphone coin drop frequencies (1700 Hz + 2200 Hz) and Silver Boxes with modified DTMF keypads to seize military Autovon priority override circuits.
1990
A single line of buggy C code in a 4ESS switch patch caused a cascading SS7 recovery storm on January 15, 1990, dropping roughly 60 million calls over nine hours.
1997
Underground syndicates commercialized "Clone King" EPROM modification kits, allowing widespread cellular subscription fraud and free international calls across North American carriers.
1998
Attackers spoofed ICMP Echo Requests to IP directed-broadcast addresses — including Portuguese academic backbones FCCN/RCTS — producing 100x amplification floods that downed victims' uplinks.
2005
Hackers breached T-Mobile's backend web customer-care interface, gaining unauthorized access to Danger cloud servers and publishing private celebrity phonebooks, SMS logs, and photos.
2017
Cybercriminals abused SS7 roaming interfaces to intercept bank-issued SMS one-time passcodes (OTPs), draining accounts of customers at O2 Germany and Metro Bank UK.
2021
Federal indictments exposed international cybercrime rings bribing retail store employees at AT&T, Verizon, and T-Mobile to execute unauthorized SIM swaps, stealing tens of millions of dollars in cryptocurrency.
2024
Attackers executed an unauthorized SIM swap against the phone number tied to the US SEC official X account, broadcasting a fraudulent Bitcoin ETF approval that caused hundreds of millions in market swings.