Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - News & Analysis - The 2015 Top Ten Global Hacks
News & Analysis

The 2015 Top Ten Global Hacks

ISBuzz TeamBy ISBuzz TeamDecember 14, 2015Updated:July 4, 20245 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
The 2015 Top Ten Global Hacks
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

SMS PASSCODE’s Pick of This Year’s Most High Profile Data Breaches

If you’re an analyst who predicted that cyber attacks would go through the roof this year, 2015 has not been a disappointment. True to industry predictions, more security breaches through hacking have hit the headlines than ever before. Whether the target is a massive corporation or a small business, no organization is too big or too small to escape hackers’ scrutiny.

Although this is by no means an exhaustive list, SMS PASSCODE’s annual “Top Ten Global Hack Attacks” showcases some of the most high profile hacks this year, showing how prevalent they are and how disastrous the consequences can be:

  1. US Office of Personnel Management: this breach was one of the biggest ever of US government systems believed – although not proved – to be perpetrated by Chinese hackers. The data theft consisted of stealing addresses, health and financial details of 19.7 million people who had been subjected to government background checks as well as 1.8 million others.
  2. FBI portal breach: a portal used by police and the FBI to share intelligence and arrest suspects was hacked in November this year and data on arrestees stolen. It is unsure how many people were affected as the FBI didn’t announce figures. This attack is thought to be one of the biggest law enforcement hacks this year. It was perpetrated by the same hackers who accessed CIA director John Brennan’s personal email account earlier this year.
  3. Ashley Madison: the security data breach that hit the infamous infidelity dating site back in the summer of 2015 was media gold. A hacking collective identified weaknesses in password encryption and used these to crack the bcrypt hashed passwords. The upshot was the personal information – including credit card details – of over 11 million  users was leaked on the dark web. And the company has lost its CEO, seen its share price and whatever credibility it had plummet and faces class actions from clients and investors.
  4. Talk Talk: October this year saw one of the UK’s biggest hacks this year and one that dominated news headlines in the UK for weeks. The mobile phone provider was the target of a bunch of teenage hackers who stole the details of over 20,000 customers. The hackers were quickly identified and dealt with, but the company has been left with a bill of up to £35 million, having had millions wiped off its share price and is facing law suits from customers and investors.
  5. Health insurer Anthem: it emerged in October that Chinese hackers had targeted US health insurance company Anthem in a bit to learn more about how medical coverage is set up in the US. Apparently, Anthem has not been the only target, with smaller insurer Premera saying it had been hacked in March, exposing details of about 11 million people. Healthcare data has become some of the most valuable information that can be sold in the online black market, making healthcare companies a prime target for hackers.
  6. Carphone Warehouse: one of the biggest breaches in the UK this year was when the details of almost 2.5 million customers was stolen back in August, with almost 90,000 having encrypted credit card information stolen. The company said they had been the victim of a sophisticated cyber attack that is being investigated by the industry watchdog.
  7. Multiple US financial institutions and media companies: hackers stole the details of over 100 million people with banks accounts in what authorities dubbed “securities fraud on cyber steroids.” At least nine banks and other financial institutions, including JP Morgan, plus Dow Jones, the parent company of the WSJ, were targeted by hackers who gained access to a number of systems that helped them to make money from illegal activities including running a digital currency exchange, gambling websites and inflating stock prices. Three men have been prosecuted.
  8. Vodafone: another UK telco company was involved in a data breach in October, when hackers stole the personal and financial details of 2000 customers. Hackers used emails addresses and passwords acquired from an unknown source to get names, phone numbers, bank sort codes and the last four digits from bank accounts.
  9. Samsung Electronics: the electronics giant’s subsidiary, LoopPay was hacked back in March this year. LoopPay developed the payment system used to run Samsung Pay, a competitor to Apple Pay, but Samsung said that no user data was compromised during the hack which lasted several months before detection.
  10. Hilton Worldwide: the global hotel chain has recently been the victim of an attack, which infiltrated its POS terminals, giving hackers unfettered access to customer credit card information. Stolen information includes cardholder names and card numbers, security codes and expiry dates, enabling hackers to shop online or by phone.

[su_note note_color=”#ffffcc” text_color=”#00000″]Torben Andersen, CCO of SMS PASSCODE : 

“This escalation in cyber attacks is only set to get worse. Whether it’s criminal gangs, teenage IT geeks, terrorists or, increasingly, Government sponsored organizations, the cyber threat is constantly evolving as are hackers’ methods. Organizations have to be thinking more laterally about security. As hackers exploit weak or stolen passwords in more than 75% of security breaches  and  simply log in as normal users to avoid detection, having multi-factor authentication in place is a vital way to step up security.”[/su_note]

[su_box title=”About SMS PASSCODE” style=”noise” box_color=”#336588″]SMS PASSCODESMS PASSCODE is a technology leader in adaptive multi-factor authentication improving enterprise security and productivity by delivering an easy to use and intelligent solution that helps ensure the safety of corporate networks and applications.

SMS PASSCODE authenticates users through their mobile devices, helping IT managers address evolving business needs with cloud applications and mobile security by dynamically authenticating users based on geo-location and login behavior patterns.

The solution secures remote access systems including Microsoft, Citrix, Cisco and Checkpoint.

Governments, telcos, enterprises and financial institutions in more than 40 countries appreciate its cost- effective, secure and easy-to-maintain offering, making SMS PASSCODE their trusted partner to securely authenticate access to services while preventing identity theft.[/su_box]

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Visual data is the blind spot in enterprise security: that’s about to change

May 4, 20267 Mins Read

Making stolen data worthless: why security must start with the data

March 30, 20265 Mins Read

Meta’s Smart Glasses Privacy Scandal Expands After Sama Credentials Found on the Dark Web

March 10, 20264 Mins Read
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}