Title | A Storage-level Detection Mechanism Against Crypto-Ransomware |
Publication Type | Conference Paper |
Year of Publication | 2018 |
Authors | Paik, Joon-Young, Choi, Joong-Hyun, Jin, Rize, Wang, Jianming, Cho, Eun-Sun |
Conference Name | Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security |
Publisher | ACM |
Conference Location | New York, NY, USA |
ISBN Number | 978-1-4503-5693-0 |
Keywords | buffer, composability, Metrics, pubcrawl, ransomware, Resiliency, security, storage devices |
Abstract | Ransomware represents a significant threat to both individuals and organizations. Moreover, the emergence of ransomware that exploits kernel vulnerabilities poses a serious detection challenge. In this paper, we propose a novel ransomware detection mechanism at a storage device, especially a flash-based storage device. To this end, we design a new buffer management policy that allows our detector to identify ransomware behaviors. Our mechanism detects a realistic ransomware sample with little negative impacts on the hit ratios of the buffers internally located in a storage device. |
URL | http://doi.acm.org/10.1145/3243734.3278491 |
DOI | 10.1145/3243734.3278491 |
Citation Key | paik_storage-level_2018 |