Open repository for the evaluation of ransomware detection tools

dc.contributor.authorBerrueta Irigoyen, Eduardo
dc.contributor.authorMorató Osés, Daniel
dc.contributor.authorMagaña Lizarrondo, Eduardo
dc.contributor.authorIzal Azcárate, Mikel
dc.contributor.departmentIngeniaritza Elektrikoa, Elektronikoaren eta Telekomunikazio Ingeniaritzareneu
dc.contributor.departmentInstitute of Smart Cities - ISCen
dc.contributor.departmentIngeniería Eléctrica, Electrónica y de Comunicaciónes_ES
dc.date.accessioned2020-07-03T12:54:10Z
dc.date.available2020-07-03T12:54:10Z
dc.date.issued2020
dc.description.abstractCrypto-ransomware is a type of malware that encrypts user files, deletes the original data, and asks for ransom to recover the hijacked documents. Several articles have presented detection techniques for this type of malware; these techniques are applied before the ransomware encrypts files or during its action in an infected host. The evaluation of these proposals has always been accomplished using sets of ransomware samples that are prepared locally for the research article, without making the data available. Different studies use different sets of samples and different evaluation metrics, resulting in insufficient comparability. In this paper, we describe a public data repository containing the file access operations of more than 70 ransomware samples during the encryption of a large network shared directory. These data have already been used successfully in the evaluation of a network-based ransomware detection algorithm. Now, we are making these data available to the community and describing their details, how they were captured, and how they can be used in the evaluation and comparison of the results of most ransomware detection techniques.en
dc.description.sponsorshipThis work was supported by the Spanish MINECO under Project TEC2015-69417-C2-2-R and Project PID2019-104451RB-C22.en
dc.format.extent12 p.
dc.format.mimetypeapplication/pdfen
dc.identifier.citationE. Berrueta, D. Morato, E. Magaña and M. Izal, 'Open Repository for the Evaluation of Ransomware Detection Tools,' in IEEE Access, vol. 8, pp. 65658-65669, 2020, doi: 10.1109/ACCESS.2020.2984187.en
dc.identifier.doi10.1109/ACCESS.2020.2984187
dc.identifier.issn2169-3536
dc.identifier.urihttps://academica-e.unavarra.es/handle/2454/37294
dc.language.isoengen
dc.publisherIEEEen
dc.relation.ispartofIEEE Access, 2020, 8, 65658-65669en
dc.relation.projectIDinfo:eu-repo/grantAgreement/MINECO//TEC2015-69417-C2-2-R/ES/
dc.relation.publisherversionhttps://doi.org/10.1109/ACCESS.2020.2984187
dc.rightsThis work is licensed under a Creative Commons Attribution 4.0 License.en
dc.rights.accessRightsinfo:eu-repo/semantics/openAccess
dc.subjectRansomwareen
dc.subjectOpen repositoryen
dc.subjectTraffic analysisen
dc.titleOpen repository for the evaluation of ransomware detection toolsen
dc.typeinfo:eu-repo/semantics/article
dc.type.versioninfo:eu-repo/semantics/publishedVersion
dspace.entity.typePublication
relation.isAuthorOfPublication66d6a070-df96-4f8b-ba63-cb0a93f576ce
relation.isAuthorOfPublicationcd454059-725e-480a-b896-894e79f307a5
relation.isAuthorOfPublicationc521bf55-a1e7-47b2-ac98-5fbf8c286f7a
relation.isAuthorOfPublicationf829a159-0938-45d1-a352-d28fb297ed0b
relation.isAuthorOfPublication.latestForDiscovery66d6a070-df96-4f8b-ba63-cb0a93f576ce

Files

Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
2020060168_BerruetaOpenRepository.pdf
Size:
1.33 MB
Format:
Adobe Portable Document Format
License bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.71 KB
Format:
Item-specific license agreed to upon submission
Description: