loading
Papers Papers/2022 Papers Papers/2022

Research.Publish.Connect.

Paper

Authors: Luigi Catuogno 1 and Clemente Galdi 2

Affiliations: 1 Dipartimento di Informatica, Università degli Studi di Salerno, Fisciano, Salerno, Italy ; 2 Dipartimento di Studi Politici e Sociali, Università degli Studi di Salerno, Fisciano, Salerno, Italy

Keyword(s): Ransomware, Ransomware Detection, Ransomware Tracking, Malice Indicators, File System Hooking, Testbed.

Abstract: Ransomware detection is gaining growing importance in the scientific literature because of widespread and economic impact of this type of malware. A successful ransomware detection system must identify a malicious behaviour as soon as possible while reducing false positive detection. To this end, different strategies have been explored. Recently, a promising approach has risen. It consists in looking for possible running ransomware by measuring the different activities every process does on the filesystem. Such measurements are represented with quantitative “indicators”. Indicators selection and their interpretation, is a critical and challenging task. In this paper we survey some of most representative file-system centered ransomware detectors and describe their chosen behavioural indicators and strategies used to measure them. Then we compare the different solutions and discuss pros, cons and open issues of every approach.

CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 3.145.17.46

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Catuogno, L. and Galdi, C. (2022). On Tracking Ransomware on the File System. In Proceedings of the 8th International Conference on Information Systems Security and Privacy - ICISSP; ISBN 978-989-758-553-1; ISSN 2184-4356, SciTePress, pages 210-219. DOI: 10.5220/0010985000003120

@conference{icissp22,
author={Luigi Catuogno. and Clemente Galdi.},
title={On Tracking Ransomware on the File System},
booktitle={Proceedings of the 8th International Conference on Information Systems Security and Privacy - ICISSP},
year={2022},
pages={210-219},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0010985000003120},
isbn={978-989-758-553-1},
issn={2184-4356},
}

TY - CONF

JO - Proceedings of the 8th International Conference on Information Systems Security and Privacy - ICISSP
TI - On Tracking Ransomware on the File System
SN - 978-989-758-553-1
IS - 2184-4356
AU - Catuogno, L.
AU - Galdi, C.
PY - 2022
SP - 210
EP - 219
DO - 10.5220/0010985000003120
PB - SciTePress