A BEHAVIORAL STUDY OF RANSOMWARE - TO DEVELOP A GENERIC MITIGATION SYSTEM
Implementing Organization
Amrita Vishwa Vidyapeetham
Principal Investigator
Dr. Gowtham Ramesh
Amrita Vishwa Vidyapeetham
About
The ransomware attacks are evolved as a serious cyber threat for the common online users, industries, and governments. On average this attack impacts the online users, governments, and global organizations with 350 percent annual growth rate. These factors clearly indicate the need for developing a robust protection system against this critical malware.
Most of the protection systems against the ransomware today are designed based on the passive or signature-based analysis. The signatures are commonly generated offline based the code patterns present in the known ransomware and stored in the signature repository. The malicious executables are identified as ransomware only when there is an explicit signature match with an entry in the repository. But, these techniques badly fails to detect the ransomware that comes with new variants, deployed code obfuscation techniques, and designed for the targeted attack. These shortcomings of the signature based systems can be addressed by developing a protection system that deploys effective behavior based analysis.
The proposed system deploys a behavior-based paradigm to detect the active ransomware. The system monitors the behavior of active programs towards the user files, retention state, its lateral movement, and system resources. These behavior information are automatically analyzed to detect the presence of the ransomware. To facilitate the behavior based ransomware detection, this project also involves developing a unique testbed to effectively monitor the behaviour of ransomware families.
Publications
2
Source
Source
Extramural R&D Projects listed in NSTMIS database 2019-20
Science and Engineering Research Board (SERB), New Delhi
Anusandhan National Research Foundation (ANRF)
Quick Information
Focus Area
Science & Engineering Research Board - Early Career Research Award, SERB-ECRA
Start Year
2019
End Year
2022
Sanction Amount
₹ 18.63 L
Status
Completed
Contact
rameshgowtham@gmail.com
Output
No. of Research Paper
00
Technologies (If Any)
00
No. of PhD Produced
00
No. of Patents
Filed :00
Grant :00
Disclaimer:
Information available on this portal is sourced from various organizations and is provided for informational purposes only. Users are advised to verify details from the respective official sources.
Please enter your details
Please provide your name and email to continue. Your details are saved in this browser for future use.
Latest Updates
Loading…
⚠️
You are leaving this website
You are about to be redirected to an external website that is not operated by
India Science, Technology & Innovation (ISTI) Portal.