Skip to Content.
Sympa Menu

netsec-sig - Re: [Security-WG] Who is Anna-Senpai, the Mirai Worm Author?

Subject: Internet2 Network Security SIG

List archive

Re: [Security-WG] Who is Anna-Senpai, the Mirai Worm Author?


Chronological Thread 
  • From: Andrew Gallo <>
  • To:
  • Subject: Re: [Security-WG] Who is Anna-Senpai, the Mirai Worm Author?
  • Date: Fri, 27 Jan 2017 09:49:45 -0500
  • Ironport-phdr: 9a23:9bA3aBeAyb6ldotpwDPX3/ZalGMj4u6mDksu8pMizoh2WeGdxcSyZh7h7PlgxGXEQZ/co6odzbGH7+a9Bidevt6oizMrSNR0TRgLiMEbzUQLIfWuLgnFFsPsdDEwB89YVVVorDmROElRH9viNRWJ+iXhpTEdFQ/iOgVrO+/7BpDdj9it1+C15pbffxhEiCCzbL52Ixi6twXcu8sZjYZjKKs61wfErGZPd+lK321jOEidnwz75se+/Z5j9zpftvc8/MNeUqv0Yro1Q6VAADspL2466svrtQLeTQSU/XsTTn8WkhtTDAfb6hzxQ4r8vTH7tup53ymaINH2QLUpUjms86tnVBnlgzoBOjUk8m/Yl9ZwgbpGrhy/qRxxw43abo+bO/VxfKzSYcgXRWVdUstLSyFNHo2xYokJAuEcPehYtY79p14WoBaiAwmjGfnvxSFGh3Tr3KM1yeAhEQXB3Ac9GN8BqnvUo8/xNKcWVuC417fHzTDZYPNX3Tfx8ofIcx48of2WQ71/bNfRxFApGgjYgFuQronlMCmU1uQLq2Wb7PBgWvy0hG48rAFxpCOvydkwhYnUnIIVy0zE9CVjzIkpIt24TVZ3Yd+6H5tMuSGWLYx2QtktQ21wvyY6xKEJuZmmfCgQ05Qo2R/fa/mdc4iJ7RLjVPqRLS1ki3JifbKygQu5/0u4yuDkS8W4zlVHojBYntTNuX0BzRPe58idRvdg4EutwSuD2x7Q5+1ePEw5lKXWJ4Q8zrM+jJYfr0LOFTLslkrslq+ZbEAk9/Co6+v5ZrXmoYeRN4puhQH/NqQugta/Dvk2MgcVQmeb/OW92KD68U3iRbVKkuU2nrPHv5DBP8gbqaC4AxJP3ok99hm/Ei+q0NUenXYZMFJIYA+Lg5bqNl3UPfz1DPiyj06jnTpr3fzKI6PtDo3ILnfZkbfhebh961RbyAo21d1Q/Z1UBasFIPL3XU/8r8LXDhojPAy1x+brEtp9140DWW6VHKCWLb7SvUeS5u0zO+mMeJMVuDHlJvg++fHhkWI5mUUcfam13ZobcX65Hvt9LkWdYHrsmcsBEXwUsgYkTezqjkGCXiBJZ3a0Qa08+i83BJi4AojeW4D+yICGiTy2FYBMZ3xXT0+DOXbua4ieXfoQMmSfLtIyvCYDUO2ITYM72A7mmwb+z70veuPb8ykcsrru0dF046vcigx0+DBpWZfOm1qRRn15yztbDwQ927py9BRw

I was introduced to an IETF draft called Manufacturers Usage Description (MUD) which is a proposal to allow devices to signal to the network information about expected traffic patterns.

The draft is here: https://tools.ietf.org/html/draft-ietf-opsawg-mud-03

An article by the author is here: https://www.ofcourseimright.com/?p=1859

I think this will go a long way to help us tame the devices that are showing
up on campus networks.



On 1/26/2017 8:30 PM, Frank Seesink wrote:
https://krebsonsecurity.com/2017/01/who-is-anna-senpai-the-mirai-worm-author/
<https://krebsonsecurity.com/2017/01/who-is-anna-senpai-the-mirai-worm-author/>

Someone referenced this recently, and I finally sat down to read it.

For anyone who hasn’t seen this, it is well worth the read. It is quite long
but covers an incredible amount of the ground we’ve been dealing with in
regard to DDoS, including the attacks on Rutgers. You may find it
interesting to read this writeup, as I think Krebs does a fantastic job
connecting the dots. Now the only question is whether law enforcement can do
the same.


Frank Seesink
Telecommunications Networking Specialist III
West Virginia Network (WVNET)
304.293.5192 x241


<mailto:>




Attachment: smime.p7s
Description: S/MIME Cryptographic Signature




Archive powered by MHonArc 2.6.19.

Top of Page