Search engine for discovering works of Art, research articles, and books related to Art and Culture
ShareThis
Javascript must be enabled to continue!

Modern Ransomware: Evolution, Methodology, Attack Model, Prevention and Mitigation using Multi-Tiered Approach

View through CrossRef
Ransomware is a menace to the vibrant digital ecosystem. The exponential growth in ransomware attacks, its detrimental impacts, and the ever-changing methods adopted by threat actor groups demands a focused understanding of the evolution of ransomware. This would help the organizations devise novel defensive frameworks and security controls against the modern ransomware. In this work, the impacts and evolution of ransomware through different phases up to its current form are detailed. Further, based on the study and analysis of the most prevalent modern ransomware variants, their most used tactics, techniques and procedures (TTPs) are identified as per the MITRE ATT&CK model. This acts as a platform to propose a generic attack model for ‘modern ransomware’. Building on the existing MITRE mitigation, D3FEND-based approaches and considering the resource and budget constraints of organizations, a simplified three-tier defensive model that is cost-effective and implementable is put forward. Thus, this work aims to open avenues for understanding the TTPs, and attack methodology of ‘modern ransomware’, thereby developing feasible and implementable defensive security controls.
Title: Modern Ransomware: Evolution, Methodology, Attack Model, Prevention and Mitigation using Multi-Tiered Approach
Description:
Ransomware is a menace to the vibrant digital ecosystem.
The exponential growth in ransomware attacks, its detrimental impacts, and the ever-changing methods adopted by threat actor groups demands a focused understanding of the evolution of ransomware.
This would help the organizations devise novel defensive frameworks and security controls against the modern ransomware.
In this work, the impacts and evolution of ransomware through different phases up to its current form are detailed.
Further, based on the study and analysis of the most prevalent modern ransomware variants, their most used tactics, techniques and procedures (TTPs) are identified as per the MITRE ATT&CK model.
This acts as a platform to propose a generic attack model for ‘modern ransomware’.
Building on the existing MITRE mitigation, D3FEND-based approaches and considering the resource and budget constraints of organizations, a simplified three-tier defensive model that is cost-effective and implementable is put forward.
Thus, this work aims to open avenues for understanding the TTPs, and attack methodology of ‘modern ransomware’, thereby developing feasible and implementable defensive security controls.

Related Results

RANSOWARE: A COMPREHENSIVE INVESTIGATION Authors
RANSOWARE: A COMPREHENSIVE INVESTIGATION Authors
Ransomware has rapidly become one of the most pervasive and damaging cyber threats in the digital age. This form of malicious software, which encrypts a victim's data and demands a...
Early Detection of Windows Cryptographic Ransomware Based on Pre-Attack API Calls Features and Machine Learning
Early Detection of Windows Cryptographic Ransomware Based on Pre-Attack API Calls Features and Machine Learning
Ransomware attacks are currently one of cybersecurity's greatest and most alluring threats. Antivirus software is frequently ineffective against zero-day malware and ransomware att...
Ransomware prediction and detection in healthcare Networking using AI
Ransomware prediction and detection in healthcare Networking using AI
The healthcare industry's reliance on interconnected digital systems, electronic health records (EHR), and real-time patient data management makes them a prime target for ransomwar...
Ransomware Classification with Deep Neural Network and Bi-LSTM
Ransomware Classification with Deep Neural Network and Bi-LSTM
Malicious attacks, malware, and ransomware families present essential risks to cybersecurity and may result in significant harm to computer systems, data clusters, networks, and mo...
KRDroid: Ransomware-Oriented Detector for Mobile Devices Based on Behaviors
KRDroid: Ransomware-Oriented Detector for Mobile Devices Based on Behaviors
Ransomware has become a serious threat on Android and new cases of ransomware are continuously growing. Most existing ransomware detectors use sensitive text or APIs to detect rans...
Ethical Ransomware Simulation: A Safe Framework for Cybersecurity Training
Ethical Ransomware Simulation: A Safe Framework for Cybersecurity Training
Ransomware is a major cybersecurity threat that causes huge financial and data losses. Most existing solutions focus on stopping ransomware after an attack, but there are not many ...
A Framework for Real-Time Ransomware Detection Using Convergent Behavioural Signal Mapping
A Framework for Real-Time Ransomware Detection Using Convergent Behavioural Signal Mapping
Traditional signature-based detection systems often fail to identify novel ransomware strains due to their reliance on known patterns, leaving systems vulnerable to emerging threat...
Clawbacks as Ransomware Deterrence
Clawbacks as Ransomware Deterrence
Every eleven seconds, a business is hit by a ransomware attack. These attacks are costly, both for the victim and for the economy writ large. Cybercriminals are estimated to have e...

Back to Top