Systematic Memory Forensic Analysis of Ransomware using Digital Forensic Tools
Paul Joseph and
Jasmine Norman
Additional contact information
Paul Joseph: Vellore Institute of Technology, India
Jasmine Norman: Vellore Institute of Technology, India
International Journal of Natural Computing Research (IJNCR), 2020, vol. 9, issue 2, 61-81
Abstract:
Cybercrimes catastrophically caused great financial loss in the year 2018 as powerful obfuscated malware known as ransomware continued to be a continual threat to governments and organizations. Advanced malwares capable of system encryption with sophisticated obscure keys left organizations paying the ransom that hackers demand. Since every individual is vulnerable to this assault, cyber forensics play a vital role either in educating society or combating the attacks. As cyber forensics is classified into many subdomains, memory forensics is the domain that leads in curbing these types of attacks. This article gives insight on importance of memory forensics and provides widespread analysis on working of ransomware, recognizes the workflow, provides the ways to overcome this attack. Furthermore, this article implements user defined rules by integrating into powerful search tools known as YARA to detect and prevent the ransomware attacks.
Date: 2020
References: Add references at CitEc
Citations:
Downloads: (external link)
http://services.igi-global.com/resolvedoi/resolve. ... 018/IJNCR.2020040105 (application/pdf)
Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:igg:jncr00:v:9:y:2020:i:2:p:61-81
Access Statistics for this article
International Journal of Natural Computing Research (IJNCR) is currently edited by Xuewen Xia
More articles in International Journal of Natural Computing Research (IJNCR) from IGI Global
Bibliographic data for series maintained by Journal Editor ().