Follow Slashdot stories on Twitter

 



Forgot your password?
typodupeerror
×
Botnet Security

Krebs Pinpoints the Likely Author of the Mirai Botnet (engadget.com) 98

The Mirai botnet caused serious trouble last fall, first hijacking numerous IoT devices to make a historically massive Distributed Denial-Of-Service (DDoS) attack on KrebsOnSecurity's site in September before taking down a big chunk of the internet a month later. But who's responsible for making the malware? From a report on Engadget: After his site went dark, security researcher Brian Krebs went on a mission to identify its creator, and he thinks he has the answer: Several sources and corroborating evidence point to Paras Jha, a Rutgers University student and owner of DDoS protection provider Protraf Solutions. About a week after attacking the security site, the individual who supposedly launched the attack, going by the username Anna Senpai, released the source code for the Mirai botnet, which spurred other copycat assaults. But it also gave Krebs the first clue in their long road to uncover Anna Senpai's real-life identity -- an investigation so exhaustive, the Krebs made a glossary of cross-referenced names and terms along with an incomplete relational map.
This discussion has been archived. No new comments can be posted.

Krebs Pinpoints the Likely Author of the Mirai Botnet

Comments Filter:
  • by Kludge ( 13653 ) on Thursday January 19, 2017 @10:31AM (#53696269)

    https://krebsonsecurity.com/20... [krebsonsecurity.com]

    BK rocks BTW.

    • by DrXym ( 126579 ) on Thursday January 19, 2017 @11:00AM (#53696439)
      Engadget suck. They digest stories and then bury the original source link amongst many others, most of which point back into their own site. They should be banned as the source of any story they didn't originate themselves.
      • by Anonymous Coward

        Many of which end up here a day later, so...

        • by DrXym ( 126579 )
          That's very true too. I've often seen a news article crawl from its original source through aggregators before it turns up here. But at least this site serves a purpose beyond just being some kind of clickbait ball of aggregated content and inward pointing links.

          Engadget used to a lot better site but not these days. Pick any article and if the original source is cited at all it'll be 2, 3, 4, 5 links into the article with all the other links pointing to other Engadget stories, each of which pulls the same

      • by ole_timer ( 4293573 ) on Thursday January 19, 2017 @12:19PM (#53697071)
        I posted krebs directly yesterday, the editors chose this nonsense today instead, go figure.
        • by Anonymous Coward

          Probably makes em more money from the links

      • by tlhIngan ( 30335 )

        Engadget suck. They digest stories and then bury the original source link amongst many others, most of which point back into their own site. They should be banned as the source of any story they didn't originate themselves.

        Usually, but this one was quite easy to find. Hint: Never look in the article for the link - look below and there's usually a "Source" link which links to the sources for the article. It's not buried, but it's not hard to find, though the coloring could be better. That's more of a CSS pr

    • by l20502 ( 4813775 )
      Can't load it, Is it being DDoSed again? Here's a link to an archived version [archive.org]
    • Thanks - article reads like Stoll's The Cuckoo's Egg!
    • by Raenex ( 947668 )

      BK rocks BTW.

      Yep, he gets it: "The object of Minecraft is to run around and build stuff, block by large pixelated block. That may sound simplistic and boring, but an impressive number of people positively adore this game -- particularly pre-teen males."

    • Alleged response from Anna-senpai:
      https://www.reddit.com/r/AskReddit/comments/5nqq3c/serious_people_whove_written_malicious_code/dce7rh9/
    • by gweihir ( 88907 )

      BK rocks BTW.

      He does. Let's hope he is right and that this person will have to pay for all the damage he did. If not, criminal business practices like this will become more common...

  • by Anonymous Coward

    This is a technical community. Why link to a pre-digested Engadget re-telling of a really great piece by Krebs?

  • by account_deleted ( 4530225 ) on Thursday January 19, 2017 @10:33AM (#53696291)
    Comment removed based on user account deletion
  • by Anonymous Coward
    Why link to a 4-paragraph crappy article when Krebs just posted a masterpiece in infosec reporting? PS: Is it me or Engadget has just given up on reporting altogether and are posting ONLY 2-3 paragraph stories now with 30 ads around them?
  • by Anonymous Coward

    I had theorized a frustrated biochem student who mistakenly attributed the creator of the Krebs Cycle [umich.edu].

    • I had theorized a frustrated biochem student who mistakenly attributed the creator of the Krebs Cycle [umich.edu].

      Yes, but it doesn't really work like that if you're on statins.

  • Indictments in 3...2...1...

    The only question is will that be days, weeks, months, or years?

  • Criminals
  • Surely the FBI is trying to find out the identity of the criminal who created this botnet. Why would Krebs go public with it, instead of going to the authorities? At the bottom of the article, it says "The FBI officials could not be immediately reached for comment." What does that mean? "could not be immediately reached?" Why was he doing this investigation alone? And why did the author of the botnet release the source code?

    • Why was he doing this investigation alone?

      Vengeance. Jha messed with Krebs, and Krebs messed back. Hard. And by going public, Jha can not attack him since he is too busy trying to burn the evidence. It is also a message to others...

    • by Anonymous Coward

      Krebs is an investigative journalist.

      Why did they release the code?? To brag.

  • Correct Article (Score:5, Informative)

    by Luthair ( 847766 ) on Thursday January 19, 2017 @11:43AM (#53696785)

    https://krebsonsecurity.com/2017/01/who-is-anna-senpai-the-mirai-worm-author/

    We do we link to some shitty gadget blog instead of the original author with real credibility?

  • ...the point would be that this person be punished fully to the degree appropriate to the economic damage they wrought.

    I like execution for any crime where the costs exceed $1 million, whether they're a hacker or Goldman Sachs.

    • It depends if you stole $1 million from a crook or from many people who didn't have much money in the first place.

      If you want to make the punishment fair, at least make it proportional to that actual harm done to people. Money means nothing.

    • by MrL0G1C ( 867445 )

      Like hacking into one pc and saying 'hi' causing their firm to have to spend 2 million upgrading all their pcs security.... or sharing 20 tunes.

  • by l0n3s0m3phr34k ( 2613107 ) on Thursday January 19, 2017 @12:26PM (#53697117)
    IMHO, this is the best part of this story: "Digital Shadows noted that the Mirai author appears to have used another nickname: “OG_Richard_Stallman,”"
  • by citylivin ( 1250770 ) on Thursday January 19, 2017 @02:25PM (#53698191)

    I actually read through the whole article and its great detective work. I get the feeling people were bragging to krebby because of how famous he is and they, being anonymous hackers, can never shut up and stop bragging. I love how the reddit account mentioned has recent postings (last one 3 days ago), hasn't been scrubbed, and links together many aspects of the guys life (his love for anime, the dorm he lives in at ruttegers, discussion of botnets and networking).

    A life lived online is not very anonymous it seems! especially when you re-use handles and are young and really really like to brag.

    Hopefully he made enough to buy a plane ticket away from the USA before the shoe drops on him. I'd be at the airport right now if i was him. Love how Jha says at the end "I don't think there are enough facts to definitively point the finger at me," Jha said. âoeBesides this article, I was pretty much a nobody. "

    Well so were all the serial killers and other sociopaths of history... obviously! Someone did the detective work and now they are notorious, like you.

    My advice? Run! The FBI surely has enough resources to get IP address for skype users, and reddit gives up their users at the drop of a hat. The FBI can easily take possession of his computer equipment with this kind of evidence. I doubt he was that careful and everything is tight and anonymous at the layer 3 level.

    Expecting to see him arrested within days! FBI doesn't like to be made a fool of!

  • by SeaFox ( 739806 )

    In Soviet Russia, senpai gets noticed!

  • by wwalker ( 159341 ) on Thursday January 19, 2017 @03:06PM (#53698523) Journal

    Wait, I thought it was Russians? After all, "Mirai" means "gullible" in Russian.

    • by klui ( 457783 )

      Or "Future" in Japanese. The author watched Mirai Nikki and was inspired by the anime. All in BK's article.

    • by amicusNYCL ( 1538833 ) on Thursday January 19, 2017 @05:49PM (#53699593)

      Yeah it really sucks when you find out that someone investigating all of the murders in town notices that the bloody footprints keep leading to your door.

      If he didn't want to go down for this then he shouldn't have done it. I probably have more respect for Brian Krebs than any other journalist, he's obviously not infallible but his investigations and articles are great pieces of work. After reading the article, it seems pretty unlikely that there is another person in that small group of people who are connected which is actually the author but somehow didn't get noticed by Krebs. Jha admitted that the author of the botnet is a sociopath, so he's at least self-aware, but I'm not going to shed any tears for him when the FBI comes calling again. His attacks have run into the hundreds of thousands or millions of dollars, and he's directly negatively impacting the lives of many other people. If you want to try to poke holes in any of Krebs' arguments then go ahead, but if you haven't even read his article then it's probably better to save your witch hunt cliche for a time when it applies.

  • The original article is good but a long read.

  • American individuals who play this game, and do not have Mafia lawyers, will eventually receive long prison sentences for multiple counts of extortion.

    The upside is the rush of power, and revenues in the thousands of dollars. These are poor compensation for a decade or more in the slammer.

Technology is dominated by those who manage what they do not understand.

Working...