Search engine for discovering works of Art, research articles, and books related to Art and Culture
ShareThis
Javascript must be enabled to continue!

MIRAD: A Method for Interpretable Ransomware Attack Detection

View through CrossRef
Abstract In the face of escalating crypto-ransomware attacks, which encrypt user data for ransom, our study introduces a significant advancement in dynamic ransomware detection. We develop an innovative machine learning model capable of identifying ransomware activity. This model is uniquely trained in a simulated user environment, enhancing detection accuracy under realistic conditions and addressing the imbalances typical of ransomware datasets. A notable aspect of our approach is the emphasis on interpretability. We employ a simplified version of Generalized Additive Models (GAMs), ensuring clarity in how individual features influence predictions. This is crucial for minimizing false positives, a common challenge in dynamic detection methods. Our contributions to the field include a Python library for easy application of our detection method, and a comprehensive, publicly available ransomware detection dataset. These resources aim to facilitate broader research and implementation in ransomware defense.
Title: MIRAD: A Method for Interpretable Ransomware Attack Detection
Description:
Abstract In the face of escalating crypto-ransomware attacks, which encrypt user data for ransom, our study introduces a significant advancement in dynamic ransomware detection.
We develop an innovative machine learning model capable of identifying ransomware activity.
This model is uniquely trained in a simulated user environment, enhancing detection accuracy under realistic conditions and addressing the imbalances typical of ransomware datasets.
A notable aspect of our approach is the emphasis on interpretability.
We employ a simplified version of Generalized Additive Models (GAMs), ensuring clarity in how individual features influence predictions.
This is crucial for minimizing false positives, a common challenge in dynamic detection methods.
Our contributions to the field include a Python library for easy application of our detection method, and a comprehensive, publicly available ransomware detection dataset.
These resources aim to facilitate broader research and implementation in ransomware defense.

Related Results

Early Detection of Windows Cryptographic Ransomware Based on Pre-Attack API Calls Features and Machine Learning
Early Detection of Windows Cryptographic Ransomware Based on Pre-Attack API Calls Features and Machine Learning
Ransomware attacks are currently one of cybersecurity's greatest and most alluring threats. Antivirus software is frequently ineffective against zero-day malware and ransomware att...
Ransomware Classification with Deep Neural Network and Bi-LSTM
Ransomware Classification with Deep Neural Network and Bi-LSTM
Malicious attacks, malware, and ransomware families present essential risks to cybersecurity and may result in significant harm to computer systems, data clusters, networks, and mo...
KRDroid: Ransomware-Oriented Detector for Mobile Devices Based on Behaviors
KRDroid: Ransomware-Oriented Detector for Mobile Devices Based on Behaviors
Ransomware has become a serious threat on Android and new cases of ransomware are continuously growing. Most existing ransomware detectors use sensitive text or APIs to detect rans...
Ransomware Early Detection using Machine Learning Approach and Pre-Encryption Boundary Identification
Ransomware Early Detection using Machine Learning Approach and Pre-Encryption Boundary Identification
The escalating ransomware threat has catalysed the formation of a sophisticated network of cybercriminal enterprises. Addressing this issue, our research provides a detailed explor...
Effects of Ransomware: Analysis, Challenges and Future Perspective
Effects of Ransomware: Analysis, Challenges and Future Perspective
This review paper highlights the challenges and best practices in malware analysis, specifically focusing on the age of ransomware. It provides an overview of malware and its impac...
Ransomware Detection through Probabilistic Code Anomaly Profiling
Ransomware Detection through Probabilistic Code Anomaly Profiling
Abstract The Probabilistic Code Anomaly Profiling (PCAP) framework represents a significant advancement in the detection of ransomware through its innovative integration of...
AI-enhanced Defense Against Ransomware Within the Organization’s Architecture
AI-enhanced Defense Against Ransomware Within the Organization’s Architecture
Ransomware is a type of revenue-generating tactic that cybercriminals utilize to improve their income. Businesses have spent billions of dollars recovering control of their resourc...
RBEF: Ransomware Efficient Public Blockchain Framework for Digital Healthcare Application
RBEF: Ransomware Efficient Public Blockchain Framework for Digital Healthcare Application
These days, the use of digital healthcare has been growing in practice. Getting remote healthcare services without going to the hospital for essential checkups and reports is easy....

Back to Top