中文
相关论文

相关论文: Comparison of Entropy Calculation Methods for Rans…

200 篇论文

Cybercrime is one of the major digital threats of this century. In particular, ransomware attacks have significantly increased, resulting in global damage costs of tens of billion dollars. In this paper, we train and test different Machine…

密码学与安全 · 计算机科学 2022-11-29 Benjamin Marais , Tony Quertier , Stéphane Morucci

With the recent growth in the number of malicious activities on the internet, cybersecurity research has seen a boost in the past few years. However, as certain variants of malware can provide highly lucrative opportunities for bad actors,…

密码学与安全 · 计算机科学 2019-11-20 Amir Atapour-Abarghouei , Stephen Bonner , Andrew Stephen McGough

Malware poses a significant security risk to individuals, organizations, and critical infrastructure by compromising systems and data. Leveraging memory dumps that offer snapshots of computer memory can aid the analysis and detection of…

密码学与安全 · 计算机科学 2023-10-09 Salim Sazzed , Sharif Ullah

Ransomware, a fearsome and rapidly evolving cybersecurity threat, continues to inflict severe consequences on individuals and organizations worldwide. Traditional detection methods, reliant on static signatures and application behavioral…

密码学与安全 · 计算机科学 2024-06-13 Dionysios Diamantopoulos , Roman Pletka , Slavisa Sarafijanovic , A. L. Narasimha Reddy , Haris Pozidis

In recent years, ransomware has been one of the most notorious malware targeting end users, governments, and business organizations. It has become a very profitable business for cybercriminals with revenues of millions of dollars, and a…

密码学与安全 · 计算机科学 2022-02-25 Harun Oz , Ahmet Aris , Albert Levi , A. Selcuk Uluagac

Malware detection is an ever-present challenge for all organizational gatekeepers, who must maintain high detection rates while minimizing interruptions to the organization's workflow. To improve detection rates, organizations often deploy…

密码学与安全 · 计算机科学 2020-05-21 Yoni Birman , Shaked Hindi , Gilad Katz , Asaf Shabtai

Malware writers frequently try to hide the activities of their agents within tunnelled traffic. Within the Kill Chain model the infection time is often measured in seconds, and if the infection is not detected and blocked, the malware…

密码学与安全 · 计算机科学 2019-07-30 Peter McLaren , William J Buchanan , Gordon Russell , Zhiyuan Tan

Ransomware attacks have caused billions of dollars in damages in recent years, and are expected to cause billions more in the future. Consequently, significant effort has been devoted to ransomware detection and mitigation. Behavioral-based…

密码学与安全 · 计算机科学 2025-07-14 Dorjan Hitaj , Giulio Pagnotta , Fabio De Gaspari , Lorenzo De Carli , Luigi V. Mancini

In this work, we propose a two-phased approach for real-time detection and deterrence of ransomware. To achieve this, we leverage the capabilities of eBPF (Extended Berkeley Packet Filter) and artificial intelligence to develop both…

密码学与安全 · 计算机科学 2024-06-21 Arjun Sekar , Sameer G. Kulkarni , Joy Kuri

Ransomware is a growing threat to individuals and enterprises alike, constituting a major factor in cyber insurance and in the security planning of every organization. Although the game theoretic lens often frames the game as a competition…

密码学与安全 · 计算机科学 2022-06-28 Erick Galinkin

The spread of ransomware continues to cause devastation and is a major concern for the security community. An often-used technique against this threat is the use of honey (or canary) files, which serve as ``trip wires'' to detect ransomware…

密码学与安全 · 计算机科学 2021-08-31 Abdul Rahim Saleh , Gihad Al-Nemera , Saif Al-Otaibi , Rashid Tahir , Mohammed Alkhatib

Malicious encryption techniques continue to evolve, bypassing conventional detection mechanisms that rely on static signatures or predefined behavioral rules. Spectral analysis presents an alternative approach that transforms system…

密码学与安全 · 计算机科学 2025-03-26 Dominica Ayanara , Atticus Hillingworth , Jonathan Casselbury , Dominic Montague

Linux-based cloud environments have become lucrative targets for ransomware attacks, employing various encryption schemes at unprecedented speeds. Addressing the urgency for real-time ransomware protection, we propose leveraging the…

Ransomware has been predominantly a threat to Windows systems. But, Linux systems became interesting for cybercriminals and this trend is expected to continue. This endangers IoT ecosystems, whereas many IoT systems are based on Linux (e.g.…

密码学与安全 · 计算机科学 2024-03-27 Salko Korac , Leandros Maglaras , Naghmeh Moradpoor , Bill Buchanan , Berk Canberk

Ransomware has emerged as a persistent cybersecurity threat,leveraging robust encryption schemes that often remain unbroken even after public disclosure of source code. Motivated by the technical resilience of such mechanisms, this paper…

密码学与安全 · 计算机科学 2025-04-17 Jiahui Shang , Luning Zhang , Zhongxiang Zheng

Spotting encryption loops in binary-only ransomware is a critical reverse engineering task. Since the existence of avalanche effect, an intrinsic characteristic of any secure encryption algorithms, is unavoidable during a victim data…

密码学与安全 · 计算机科学 2026-04-28 Nanqing Luo , Xusheng Li , Haizhou Wang , Shuangyi Zhu , Yuan Ma , Peng Liu

Over the past three years, especially following WannaCry malware, ransomware has become one of the biggest concerns for private businesses, state, and local government agencies. According to Homeland Security statistics, 1.5 million…

密码学与安全 · 计算机科学 2020-03-18 Murat Ozer , Said Varlioglu , Bilal Gonen , Mehmet F. Bastug

This work focuses on a specific front of the malware detection arms-race, namely the detection of persistent, disk-resident malware. We exploit normalised compression distance (NCD), an information theoretic measure, applied directly to…

密码学与安全 · 计算机科学 2015-02-27 Nadia Alshahwan , Earl T. Barr , David Clark , George Danezis

Traditional techniques to prevent damage from ransomware attacks are to detect and block attacks by monitoring the known behaviors such as frequent name changes, recurring access to cryptographic libraries and exchange keys with remote…

密码学与安全 · 计算机科学 2019-04-11 Jinwoo Ahn , Donggyu Park , Chang-Gyu Lee , Donghyun Min , Junghee Lee , Sungyong Park , Qian Chen , Youngjae Kim

Modern ransomware often generate and manage cryptographic keys on the victim's machine, giving defenders an opportunity to capture exposed keys and recover encrypted data without paying the ransom. However, recent work has raised the…

密码学与安全 · 计算机科学 2021-07-21 Alpesh Bhudia , Daniel O'Keeffe , Daniele Sgandurra , Darren Hurley-Smith