• español 
    • español
    • English
    • français
  • FacebookPinterestTwitter
  • español
  • English
  • français
Ver ítem 
  •   DIGIBUG Principal
  • 1.-Investigación
  • Departamentos, Grupos de Investigación e Institutos
  • Departamento de Teoría de la Señal, Telemática y Comunicaciones
  • DTSTC - Artículos
  • Ver ítem
  •   DIGIBUG Principal
  • 1.-Investigación
  • Departamentos, Grupos de Investigación e Institutos
  • Departamento de Teoría de la Señal, Telemática y Comunicaciones
  • DTSTC - Artículos
  • Ver ítem
JavaScript is disabled for your browser. Some features of this site may not work without it.

Lightweight Crypto-Ransomware Detection in Android Based on Reactive Honeyfile Monitoring

[PDF] Artículo principal (1.817Mb)
Identificadores
URI: https://hdl.handle.net/10481/91093
DOI: 10.3390/s24092679
Exportar
RISRefworksMendeleyBibtex
Estadísticas
Ver Estadísticas de uso
Metadatos
Mostrar el registro completo del ítem
Autor
Gómez Hernández, José Antonio; García Teodoro, Pedro
Editorial
MDPI
Materia
Crypto-ransomware
 
Early detection
 
Deception
 
Reactive monitoring
 
Honeyfile
 
Android
 
Fecha
2024-04-23
Referencia bibliográfica
Gómez-Hernández, J.A.; García-Teodoro, P. Lightweight Crypto-Ransomware Detection in Android Based on Reactive Honeyfile Monitoring. Sensors 2024, 24, 2679. https://doi.org/10.3390/s24092679
Patrocinador
Consejería de Universidad, Investigación e Innovación C-ING-300-UGR23; ERDF Andalusia Program 2021–2027; European NextGeneration Funds C025/24 INCIBE-UGR
Resumen
Given the high relevance and impact of ransomware in companies, organizations, and individuals around the world, coupled with the widespread adoption of mobile and IoT-related devices for both personal and professional use, the development of effective and efficient ransomware mitigation schemes is a necessity nowadays. Although a number of proposals are available in the literature in this line, most of them rely on machine-learning schemes that usually involve high computational cost and resource consumption. Since current personal devices are small and limited in capacities and resources, the mentioned schemes are generally not feasible and usable in practical environments. Based on a honeyfile detection solution previously introduced by the authors for Linux and Window OSs, this paper presents a ransomware detection tool for Android platforms where the use of trap files is combined with a reactive monitoring scheme, with three main characteristics: (I) the trap files are properly deployed around the target file system, (II) the FileObserver service is used to early alert events that access the traps following certain suspicious sequences, and (III) the experimental results show high performance of the solution in terms of detection accuracy and efficiency.
Colecciones
  • DTSTC - Artículos
  • OpenAIRE (Open Access Infrastructure for Research in Europe)

Mi cuenta

AccederRegistro

Listar

Todo DIGIBUGComunidades y ColeccionesPor fecha de publicaciónAutoresTítulosMateriaFinanciaciónPerfil de autor UGREsta colecciónPor fecha de publicaciónAutoresTítulosMateriaFinanciación

Estadísticas

Ver Estadísticas de uso

Servicios

Pasos para autoarchivoAyudaLicencias Creative CommonsSHERPA/RoMEODulcinea Biblioteca UniversitariaNos puedes encontrar a través deCondiciones legales

Contacto | Sugerencias