错误:搜索内容不能为空,请输入英文关键词
错误:关键词超出字数限制,请精简
高级检索

An Assessment of Obfuscated Bad Rabbit Ransomware Detection and Prevention Methods

  • Mohammad Aljaidi,
  • Mohammad Hassan,
  • Ghassan Samara,
  • Ayoub Alsarhan,
  • Raed Alazaidah,
  • Sattam Almatarneh,
  • Hamzah Aljawawdeh,
  • Syed Muqtar Ahmed

摘要

A specific type of virus called Systems and Resources ransomware attacks, which prevents users from accessing these systems and resources until a ransom is paid. This attack is based on file encryption and/or computer locking, it achieves this by denial of service to its user on the system. Malware exploits people's fear of exposing their critical and secret information, facing severe hardware damage, or losing important data. NotPetya, Petya, WannaCry, SamSam, Bad Rabbit, and Baltimore City are examples of the most recent, well-known ransomware strains. Obfuscation is a unique method used by developers of ransomware to avoid being discovered by antivirus software. The degree of virus detection relies on the complication of the obfuscation procedure. In this research, the BadRabbit ransomware attack will be technically investigated. Considering the vulnerabilities on the victim machines, how the attackers exploit these vulnerabilities, and what are prevention and countermeasures techniques that can be used against this type of attack.