Change Point Detection with Machine Learning for Rapid Ransomware Detection

被引:0
|
作者
Melaragno, Anthony [1 ]
Casey, William [1 ]
机构
[1] US Naval Acad, Cyber Sci, Annapolis, MD 21402 USA
关键词
D O I
10.1109/DASC/PiCom/CBDCom/Cy55231.2022.9927828
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Ransomware has been an ongoing issue since the early 1990s. In recent times ransomware has spread from traditional computational resources to cyber-physical systems and industrial controls. We devised a series of experiments in which virtual instances are infected with ransomware. We instrumented the instances then collected resource utilization data across a variety of metrics (CPU, Memory, Disk Utility. fan speed, etc.). We design a change point detection and learning method for identifying ransomware execution. Finally, we evaluate and demonstrate its ability to detect ransomware efficiently in a rapid manner when trained on a minimal set of samples to try to preserve data. Our results represent a step forward for defense, and we conclude with further remarks for a critical path forward.
引用
收藏
页码:154 / 162
页数:9
相关论文
共 50 条
  • [21] Ransomware Attack Detection on the Internet of Things Using Machine Learning Algorithm
    Zewdie, Temechu Girma
    Girma, Anteneh
    Cotae, Paul
    HCI INTERNATIONAL 2022 - LATE BREAKING PAPERS: INTERACTING WITH EXTENDED REALITY AND ARTIFICIAL INTELLIGENCE, 2022, 13518 : 598 - 613
  • [22] Dynamic Feature Dataset for Ransomware Detection Using Machine Learning Algorithms
    Herrera-Silva, Juan A.
    Hernandez-alvarez, Myriam
    SENSORS, 2023, 23 (03)
  • [23] Ransomware Detection: Ensemble Machine Learning Models using Disjoint Data
    da Silva, Charles M. R.
    de Castro, Paulo Andre L.
    Cesar, Cecilia de A. C.
    2024 IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND RESILIENCE, CSR, 2024, : 166 - 179
  • [24] Evaluation metric for crypto-ransomware detection using machine learning
    Kok, S. H.
    Azween, A.
    Jhanjhi, N. Z.
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2020, 55
  • [25] API-Based Ransomware Detection Using Machine Learning-Based Threat Detection Models
    Almousa, May
    Basavaraju, Sai
    Anwar, Mohd
    2021 18TH INTERNATIONAL CONFERENCE ON PRIVACY, SECURITY AND TRUST (PST), 2021,
  • [26] FeSAD ransomware detection framework with machine learning using adaption to concept drift
    Fernando, Damien Warren
    Komninos, Nikos
    COMPUTERS & SECURITY, 2024, 137
  • [27] Feature-Selection-Based Ransomware Detection with Machine Learning of Data Analysis
    Wan, Yu-Lun
    Chang, Jen-Chun
    Chen, Rong-Jaye
    Wang, Shiuh-Jeng
    PROCEEDINGS OF 2018 3RD INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATION SYSTEMS (ICCCS), 2018, : 85 - 88
  • [28] Enhancing Machine Learning Approach Based on Nilsimsa Fingerprinting for Ransomware Detection in IoMT
    Lucia Hernandez-Jaimes, Mireya
    Martinez-Cruz, Alfonso
    Alejandra Ramirez-Gutierrez, Kelsey
    Guevara-Martinez, Elizabeth
    IEEE ACCESS, 2024, 12 : 153886 - 153897
  • [29] Ransomware Detection Using the Dynamic Analysis and Machine Learning: A Survey and Research Directions
    Urooj, Umara
    Al-rimy, Bander Ali Saleh
    Zainal, Anazida
    Ghaleb, Fuad A.
    Rassam, Murad A.
    APPLIED SCIENCES-BASEL, 2022, 12 (01):
  • [30] Ransomware Detection Using Machine Learning: A Review, Research Limitations and Future Directions
    Ispahany, Jamil
    Islam, Md. Rafiqul
    Islam, Md. Zahidul
    Khan, M. Arif
    IEEE ACCESS, 2024, 12 : 68785 - 68813