Educause Security Discussion mailing list archives

Re: " ...colleges and universities all over the United States found that their network printers were spilling out Auernheimer’s flyer."


From: Tracy Mitrano <tracy.mitrano () UMASS EDU>
Date: Mon, 28 Mar 2016 14:19:08 +0000

Thank you for that advice, Shawn, and might I also suggest to E. community and each campus that they boot this issue up 
to FBI and other federal law enforcement for violation of Computer Fraud and Abuse Act.

Even if it turns out to be executed from outside the U.S., it is yet one more (potent) reason for why we need 
international Internet governance.

Tracy




On 3/28/16, 10:14 AM, "The EDUCAUSE Security Constituent Group Listserv on behalf of Shawn Merdinger" <SECURITY () 
LISTSERV EDUCAUSE EDU on behalf of shawnmer () GMAIL COM> wrote:

Lock down your printers, lest Weev (and now countless others) will
troll you with racist print jobs.

http://motherboard.vice.com/en_ca/read/hacker-weev-made-thousands-of-internet-connected-printers-spit-out-racist-flyers

https://storify.com/weev/a-small-experiment-in

Fwiw, I've a couple slides in a 2014 Educause preso detailing this
vector exactly...down to the shell script...and one slide in
particular that will most certainly get you the backing from C-level
execs to remove your printers from public IP (child pr0n, hostile work
environment lawsuits, every public IP printer now a state/federal
crime scene).

http://www.educause.edu/sites/default/files/library/presentations/SEC14/SESS08/shodan_for_edu_educause_security_conference_2014_public_version_shawn_merdinger.pdf

Cheers,
--scm

Current thread: