Ransomware Detection Using Open-source Tools

2022 24TH INTERNATIONAL CONFERENCE ON ADVANCED COMMUNICATION TECHNOLOGY (ICACT): ARITIFLCIAL INTELLIGENCE TECHNOLOGIES TOWARD CYBERSECURITY(2022)

引用 0|浏览1
暂无评分
摘要
The recent development of new and variant malicious codes, and the increase in cyberattacks in the form of intelligent Advanced Persistent Threat (APT), has led to rapidly increasing levels of damage. In particular, in the case of ransomware, the damage per attack is large, because ransomware uses a network propagation method, by which each attack can infect multiple victims. As ransomware as a service (RaaS) has increased recently, even people without the capacity to develop malicious code have become able to attack via ransomware. In this study, we built and experimented with a framework that detects ransomware in network and system environments using open-source tools. This study showed through analysis and experiments that open-source tools can quickly identify and respond immediately to APT attacks.
更多
查看译文
关键词
Open-source, Endpoint Detection and Response (EDR), Google Rapid Response, Open-source HIDS SECurity (OSSEC), osquery, Ransomware Detection
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要