Authors
Md Ahsan Ayub, Andrea Continella, Ambareen Siraj
Publication date
2020/8/11
Conference
2020 IEEE 21st International Conference on Information Reuse and Integration for Data Science (IRI)
Pages
319-324
Publisher
IEEE
Description
In recent times, there has been a global surge of ransomware attacks targeted at industries of various types and sizes from retail to critical infrastructure. Ransomware researchers are constantly coming across new kinds of ransomware samples every day and discovering novel ransomware families out in the wild. To mitigate this ever-growing menace, academia and industry-based security researchers have been utilizing unique ways to defend against this type of cyber-attacks. I/O Request Packet (IRP), a low-level file system I/O log, is a newly found research paradigm for defense against ransomware that is being explored frequently. As such in this study, to learn granular level, actionable insights of ransomware behavior, we analyze the IRP logs of 272 ransomware samples belonging to 18 different ransomware families captured during individual execution. We further our analysis by building an effective Artificial …
Total citations
202120222023202462112
Scholar articles