Photo credit: Michael Geiger
Engineering researchers have developed a new approach for implementing ransomware detection techniques, allowing them to detect a broad range of ransomware far more quickly than previous systems.
Ransomware is a type of malware. When a system is infiltrated by ransomware, the ransomware encrypts that system’s data – making the data inaccessible to users. The people responsible for the ransomware then extort the affected system’s operators, demanding money from the users in exchange for granting them access to their own data.
Ransomware extortion is hugely expensive, and instances of ransomware extortion are on the rise. The FBI reports receiving 3,729 ransomware complaints in 2021, with costs of more than $49 million. What’s more, 649 of those complaints were from organizations classified as critical infrastructure.
“Computing systems already make use of a variety of security tools that monitor incoming traffic to detect potential malware and prevent it from compromising the system,” says Paul Franzon, co-author of a paper on the new ransomware detection approach. “However, the big challenge here is detecting ransomware quickly enough to prevent it from getting a foothold in the system. Because as soon as ransomware enters the system, it begins encrypting files.” Franzon is Cirrus Logic Distinguished Professor of Electrical and Computer Engineering at North Carolina State University.
“There’s a machine-learning algorithm called XGBoost that is very good at detecting ransomware,” says Archit Gajjar, first author of the paper and a Ph.D. student at NC State. “However, when systems run XGBoost as software through a CPU or GPU, it’s very slow. And attempts to incorporate XGBoost into hardware systems have been hampered by a lack of flexibility – they focus on very specific challenges, and that specificity makes it difficult or impossible for them to monitor for the full array of ransomware attacks.
“We’ve developed a hardware-based approach that allows XGBoost to monitor for a wide range of ransomware attacks, but is much faster than any of the software approaches,” Gajjar says.
The new approach is called FAXID, and in proof-of-concept testing, the researchers found it was just as accurate as software-based approaches at detecting ransomware. The big difference was speed. FAXID was up to 65.8 times faster than software running XGBoost on a CPU and up to 5.3 times faster than software running XGBoost on a GPU.
“Another advantage of FAXID is that it allows us to run problems in parallel,” Gajjar says. “You could devote all of the dedicated security hardware’s resources to ransomware detection, and detect ransomware more quickly. But you could also allocate the security hardware’s computing power to separate problems. For example, you could devote a certain percentage of the hardware to ransomware detection and another percentage of the hardware to another challenge – such as fraud detection.”
“Our work on FAXID was funded by the Center for Advanced Electronics through Machine Learning (CAEML), which is a public-private partnership,” Franzon says. “The technology is already being made available to members of the center, and we know of at least one company that is making plans to implement it in their systems.”
Original Article: New Approach Allows for Faster Ransomware Detection
More from: North Carolina State University
The Latest Updates from Bing News & Google News
Go deeper with Bing News on:
Ransomware detection
- Thoma Bravo to take UK cybersecurity company Darktrace private in $5B deal
Darktrace is set to go private in a deal that values the U.K.-based cybersecurity giant at around $5 billion. A newly formed entity called Luke Bidco Ltd., formed by private equity giant Thoma Bravo, ...
- Cybersecurity researchers spotlight a new ransomware threat – be careful where you upload files
You probably know better than to click on links that download unknown files onto your computer. It turns out that uploading files can get you into trouble, too. Today’s web browsers are much more ...
- Report Identifies Hidden Costs, Challenges of Ransomware
91 percent of those who experienced a ransomware attack paid up, compared to 83 percent in 2023 and 72 percent in 2022. On average, the research found ransomware payments alone cost nearly $2.5 ...
- United Healthcare confirms paying undisclosed ransomware
United Healthcare Group has confirmed this week it paid an undisclosed amount of ransomware to resolve a hacking of its Change Healthcare prescription claims systems.
- Trend Micro: Malaysia records 69% decline in ransomware detections in 2023
Annual Cybersecurity Threat Report also showed a year-over-year reduction in a number of other threats in Malaysia, with a 52% decline in malicious hosted URL threats being the most notable.
Go deeper with Google Headlines on:
Ransomware detection
[google_news title=”” keyword=”ransomware detection” num_posts=”5″ blurb_length=”0″ show_thumb=”left”]
Go deeper with Bing News on:
FAXID
- The best sales to shop this weekend: Baby Foot, Athleta, Bose and more
This weekend, you’ll find a deal on an Eddie Bauer camping tent, a discounted travel steamer and savings on Bose QuietComfort Ultra Headphones. All that and more below.
- Listen To The Magico M7 In London And Hear How Great Speakers Sound
The Magico M7 are four-way, six-driver floorstanding loudspeakers that use the latest Magico drive-unit technology. Be prepared to dig deep with a pair costing $375,000.
- How a Tata Nano came into our lives in 2014: Long-term ownership review
BHPian cheeku recently shared this with other enthusiasts.This review is of our *now-sold* Tata Nano 2013 LX - nicknamed Mooshak since this was one of the first cars that I had learnt driving in and I ...
- Best Monitors for Graphic Design in 2024
The ViewSonic VP2756-4K brings sharp details through UHD resolution on a 27-inch screen. It uses an IPS panel that comes with ultra-thin bezels for an immersive view and is ideal for color grading or ...
- 700 HP Chevy Silverado Fox Factory Wants To Blow Away The F-150 Raptor R
Apart from an extensive list of mechanical upgrades, Fox Factory has also made the interior of the Silverado that little more special ...
Go deeper with Google Headlines on:
FAXID
[google_news title=”” keyword=”FAXID” num_posts=”5″ blurb_length=”0″ show_thumb=”left”]