onlinesyscfg.research
utc
syscfg://research
home/research/kevin-poulsen-dark-dante-radio-contest-hack
PublishedThreat History

Kevin Poulsen: The Hacker Who Rigged a Radio Contest by Taking Over the Phone Company to Win a Porsche

2026-08-09-14 min read
#kevin-poulsen#dark-dante#phone-phreaking#pacific-bell#kiis-fm#ss7#fbi#fugitive#wiretapping#wired

Kevin Poulsen's most famous hack was also his most absurd: he took over the telephone switching network of a Los Angeles radio station to guarantee himself a Porsche 944 S2. KIIS-FM was running a promotion in June 1990 - be the 102nd caller when they announced the number, win the car. Poulsen and two accomplices broke into Pacific Bell switching systems, blocked all calls to KIIS-FM except their own, and made sure his call was the 102nd to go through. He won the Porsche. The FBI was already looking for him. The stunt made him the most wanted computer criminal in the United States.

The car stunt was the headline, but it obscured the more serious substance of Poulsen's hacking career. Under the handle "Dark Dante," he had spent years systematically penetrating government computer systems, telephone company switching networks, and federal agency databases. He had accessed classified military databases, tapped phones, and most significantly, broken into FBI wiretap systems and federal databases to find the identities of undercover informants. When he became a fugitive in 1989, he used his phone company access to monitor the investigation into himself in real time.

Pacific Bell and Phone System Access

Poulsen's technical specialty was telephone switching systems - specifically the computerized systems that Pacific Bell and other Bell Operating Companies used to manage call routing in California. He had cultivated deep knowledge of how these systems worked, which administrator accounts had what access, and how to move through them without triggering alarms. This wasn't wardroving or exploiting software vulnerabilities; it was the accumulated knowledge of someone who had studied telephone company architecture extensively and found ways to exploit the access controls on the switching computers.

His access to Pacific Bell's systems gave him capabilities that went beyond typical computer intrusion: he could redirect calls, tap conversations, monitor telephone records, and place calls that appeared to come from any number he chose. The KIIS-FM Porsche hack required blocking all incoming calls to the station except his own, then routing his call to appear as the 102nd - capabilities that required control over the actual switching equipment handling calls into the station's phone lines.

[TECHNICAL NOTE]
Poulsen's exploitation of telephone switching systems placed him in a category distinct from most computer hackers of the era. The phone system attacks were not software vulnerabilities in the traditional sense - they were the product of deep familiarity with telecommunications architecture, operator access conventions, and the relatively primitive access controls on systems that Pacific Bell's own employees used for legitimate administration. The telephone network in the late 1980s ran on a mix of digital switching systems (like AT&T 5ESS and Northern Telecom DMS-100) connected via SS7 (Signaling System 7) - the protocol that handled call setup and routing across the phone network. SS7 was designed for security through obscurity within the telephone network, not for resistance to attacks from someone inside the system. Once Poulsen had administrative access to PBX and central office systems, the protocol itself provided no security against misuse. The SS7 vulnerabilities that security researchers documented and published in 2014-2016 - enabling phone call interception, SMS interception, and location tracking from anywhere in the world - exploited the same fundamental design assumptions that Poulsen exploited in 1988-1990, using only slightly more accessible attack surfaces.

FBI Wiretap Access and the Fugitive Years

Before the Porsche hack, Poulsen had already crossed lines that made the FBI's interest in him more than routine. He had accessed SCI (Sensitive Compartmented Information) databases at the Defense Communications Agency, had penetrated systems at the FBI, and most damaging: he had accessed federal law enforcement databases containing information about undercover operations and informants. Allegations that he used this access to identify and warn individuals being investigated by the FBI were the most serious charges he ultimately faced.

When the FBI came for him in 1989, he disappeared. He spent seventeen months as a fugitive, using his technical skills to monitor the investigation against him. He is alleged to have tapped phone lines to stay ahead of investigators and to have accessed federal systems to track the status of the investigation. The cat-and-mouse quality of the fugitive period - a hacker actively surveilling his own federal investigation in real time - made him a genuinely remarkable figure even by the standards of the hacker underground.

[WARNING]
Poulsen's 1994 federal conviction came with an unusual condition: he was banned from using computers or the internet for three years after his release from prison. At the time, this seemed like a meaningful restriction. It turned out to be a prescient measure for an entirely different reason: Poulsen emerged from prison in 1996, completed his computer ban in 1999, and went on to have a legitimate second career in technology journalism. He became a security journalist at Wired, conducted some of the most important investigative reporting on cybercrime in the mid-2000s, and in 2006 broke the story that identified Lori Drew - the MySpace bully whose harassment of teenager Megan Meier had contributed to Meier's suicide. He also developed tools for journalists to use public databases to identify convicted sex offenders on MySpace and identified 744 registered sex offenders with MySpace accounts in 2006. The arc from dark-side hacker to public-interest security journalist is unusual, but Poulsen is the most prominent example of it. He eventually became the features editor at Wired and wrote "Kingpin," a well-regarded book on the Max Butler/Iceman story in online credit card fraud.

Legal Outcome

Poulsen was finally arrested in April 1991 when he was recognized at a supermarket in Menlo Park by a former associate who called the FBI. His case moved slowly through the federal system, partly because the charges involved classified material that complicated pre-trial proceedings. He pleaded guilty in 1994 to seven counts including mail fraud, obstruction of justice, wiretapping, and money laundering (he had used stolen credit cards from a database he accessed). He was sentenced to 51 months in federal prison - at the time the longest sentence ever imposed for computer hacking in the United States.

The seventeen months he had already served as a pretrial detainee were counted toward the sentence. He was released in 1996 and completed his three-year computer ban in 1999, after which he began his journalism career.

[IOC]
Kevin Lee Poulsen ("Dark Dante") summary: active hacking period approximately 1983-1991. Primary technical specialty: telephone company switching systems (Pacific Bell), PBX manipulation, ARPANET/government network intrusion. Most publicized incident: KIIS-FM Porsche hack, June 1990 - blocked incoming calls to KIIS-FM during radio contest to ensure his was the 102nd call, winning a Porsche 944 S2. Other significant incidents: access to classified DOD/DCA systems; penetration of FBI systems and federal law enforcement databases containing undercover operation information and informant identities; monitoring of his own federal investigation during fugitive period. Handle: Dark Dante. Fugitive period: 1989-1991 (17 months), during which he allegedly continued monitoring federal systems to track the investigation. Arrest: April 1991, recognized at Menlo Park supermarket. Legal outcome: 7 counts including wiretapping, obstruction of justice, mail fraud, money laundering; sentenced 51 months federal prison; additional 3-year computer ban. At sentencing (1994): longest computer crime sentence in US history. Release: 1996. Post-prison career: technology journalist, Wired; broke Megan Meier/Lori Drew/MySpace story (2006); identified 744 sex offenders with MySpace accounts (2006); Wired features editor; author of "Kingpin" (Max Butler/Iceman story). Legacy: one of the most technically capable phone phreaks and computer hackers of the pre-web era; transition to legitimate journalism represents unusual but documented rehabilitation arc.