AIセキュリティポータル K Program
Ransomware Detection and Classification Strategies
Share
Abstract
Ransomware uses encryption methods to make data inaccessible to legitimate users. To date a wide range of ransomware families have been developed and deployed, causing immense damage to governments, corporations, and private users. As these cyberthreats multiply, researchers have proposed a range of ransomware detection and classification schemes. Most of these methods use advanced machine learning techniques to process and analyze real-world ransomware binaries and action sequences. Hence this paper presents a survey of this critical space and classifies existing solutions into several categories, i.e., including network-based, host-based, forensic characterization, and authorship attribution. Key facilities and tools for ransomware analysis are also presented along with open challenges.
Ransomware defense validated design guide
NA
Published: 2016
Ransomware facts, trends & statistics for 2022
NA
Published: 2022
Ransomware detection, avoidance, and mitigation scheme: A review and future directions
A. Kapoor
Published: 2021
Senate bill to mandate cyberattack, ransomware payment reporting
NA
Published: 2021
A survey on detection techniques for cryptographic ransomware
E. Berrueta, D. Morato, E. Magana, M. Izal
Published: 2019
A survey on windows-based ransomware taxonomy and detection mechanisms
R. Moussaileb, N. Cuppens, J.-L. Lanet, Bouder
Published: 2022
A multi-classifier network-based crypto ransomware detection system: A case study of locky ransomware
Almashhadani, A. O., Kaiiali, M., Sezer, S., O’Kane, P.
Published: 2019
Network based ransomware detection on the samba protocol
D. Mulders
Published: 2017
Ransomware early detection by the analysis of file sharing traffic
D. Morato, E. Berrueta, E. Magana, M. Izal
Published: 2018
Machine learning-based detection of ransomware using sdn
G. Cusack, O. Michel, E. Keller
Published: 2018
R-killer: An email based ransomware protection tool
B. Lokuketagoda, M. Weerakoon, U. Kuruppu, A. Senarathne, K. Abeywardena
Published: 2018
Drthis: Deep ransomware threat hunting and intelligence system at the fog layer
S. Homayoun, A. Dehghantanha, M. Ahmadzadeh, S. Hashemi
Published: 2019
Detection and analysis cerber ransomware based on network forensics behavior
K. Ade, R. Imam
Published: 2018
Detecting android locker-ransomware on chinese social networks
D. Su, J. Liu, X. Wang, W. Wang, P. O’Kane
Published: 2019
The dynamic analysis of wannacry ransomware
Da-Yu Kao, Shou-Ching Hsiao
Published: 2018
Deepran: Attention-based bilstm and crf for ransomware early detection and classification
K. C. Roy, Q. Chen
Published: 2021
Software-defined networking-based crypto ransomware detection using http traffic characteristics
K. Cabaj, M. Gregorczyk, W. Mazurczyk
Published: 2019
UNVEIL: A Large-Scale, automated approach to detecting ransomware
A. Kharaz, S. Arshad, C. Mulliner, W. Robertson, E. Kirda
Published: 2016
Paybreak: Defense against cryptographic ransomware
K. Eugene, K. Wil, S. Gianluca, E. Manuel
Published: 2017
Shieldfs: a self-healing, ransomware-aware filesystem
A. Continella, A. Guagnelli, G. Zingaro, G. Pasquale, A. Barenghi, S. Zanero, F. Maggi
Published: 2016
Redemption: Real-time protection against ransomware at end-hosts
A. Kharraz, E. Kirda
Published: 2017
Ssd-insider: Internal defense of solid-state drive against ransomware with perfect data recoveryquestio
S. Baek, Y. Jung, D. Mohaisen, S. Lee, D. Nyang
Published: 2018
Rapper: Ransomware prevention via performance counters
S. Sinha, M. Alam, S. Bhattacharya, D. Mukhopadhyay, A. Chattopadhyay, S. Dutta
Published: 2018
On ransomware family attribution using pre-attack paranoia activities
R. M. A. Molina, S. Torabi, K. Sarieddine, E. Bou-Harb, N. Bouguila, C. Assi
Published: 2022
Exploiting ransomware paranoia for execution prevention
A. AlSabeh, H. Safa, E. Bou-Harb, J. Crichigno
Published: 2020
Rpm: Ransomware prevention and mitigation using operating systems sensing tactics
R. M. A. Molina
Published: 2022
Leveraging intrinsic flash properties to defend against encryption ransomware
J. Huang, J. Xu, X. Xing, P. Liu, M. Qureshi
Published: 2017
Classification of ransomware families with machine learning based onn-gram of opcodes
H. Zhang, X. Xiao, F. Mercaldo, S. Ni, F. Martinelli, A. Sangaiah
Published: 2019
Binsim: Trace-based semantic binary diffing via system call sliced segment equivalence checking
J. Ming, D. Xu, Y. Jiang, D. Wu, Debdeep, A. Chattopadhyay, S. Dutta
Published: 2017
Automatic ransomware detection and analysis based on dynamic api calls flow graph
Z. Chen, H. Kang, S. Yin, S. Kim
Published: 2019
Forensic analysis of ransomware families using static and dynamic analysis
K. Subedi, D. R. Budhathoki, D. Dasgupta
Published: 2018
Digital forensic readiness framework
A. Singh, I. Adeyemi, H. Venter
Published: 2018
Measuring and modeling the label dynamics of online Anti-Malware engines
S. Zhu, J. Shi, L. Yang, B. Qin, Z. Zhang, L. Song, G. Wang
Published: 2020
Tracking ransomware end-to-end
D. Y. Huang, M. M. Aliapoulios, V. G. Li, L. Invernizzi, E. Bursztein, K. McRoberts, J. Levin, K. Levchenko, A. C. Snoeren, D. McCoy
Published: 2018
On the economics of ransomware
A. Laszka, S. Farhang, J. Grossklags
Published: 2017
“i was told to buy a software or lose my computer. i ignored it”: A study of ransomware
C. Simoiu, C. Gates, J. Bonneau, S. Goel
Published: 2019
Cutting the gordian knot: A look under the hood of ransomware attacks
A. Kharraz, W. Robertson, D. Balzarotti, L. Bilge, E. Kirda
Published: 2015
Identifying multiple authors from source code files
M. Abuhamad, T. Abuhmed, D. Nyang, D. Mohaisen
Published: 2020
De-anonymizing programmers via code stylometry
Aylin Caliskan-Islam, Richard Harang, Andrew Liu, Arvind Narayanan, Clare Voss, Fabian Yamaguchi, Rachel Greenstadt
Published: 2015
Authorship analysis: identifying the author of a program
I. Krsul, E. H. Spafford
Published: 1997
Software forensics: Can we track code to its authors?
E. H. Spafford, S. A. Weeber
Published: 1993
Machine learning-based analysis of program binaries: A comprehensive study
H. Xue, S. Sun, G. Venkataramani, T. Lan
Published: 2019
Who wrote this code? identifying the authors of program binaries
N. E. Rosenblum, X. Zhu, B. P. Miller
Published: 2011
Identifying multiple authors in a binary program
X. Meng, B. P. Miller, K. Jun
Published: 2017
Share