Methodology for Intercepting the Ransomware Attacks Using File I/O Intervals

  • Youn J
  • Jo J
  • Ryu J
N/ACitations
Citations of this article
10Readers
Mendeley users who have this article in their library.

Abstract

Ransomware was first created in 1999, but its existence become widely known in Korean by 2015. As information and communication technology have developed, the storage capacity of computer has enlarged, it accordingly is getting more important to effectively manage these information, rather than the information itself. In such situation, the ransomware break into other people`s computer and encrypt an files without a user`s permission. So, it adversely affect the user. In this paper, we monitor an access of a specific process to the file. And on the basis of this monitoring information, we detect whether the abnormal approach happened. Through the detection result, we block the permission about access to the file for a specific process. Using this method, we propose a blocking technique for the ransomeware`s abnormal approach and encryption to the files.

Cite

CITATION STYLE

APA

Youn, J., Jo, J., & Ryu, J. (2016). Methodology for Intercepting the Ransomware Attacks Using File I/O Intervals. Journal of the Korea Institute of Information Security and Cryptology, 26(3), 645–653. https://doi.org/10.13089/jkiisc.2016.26.3.645

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free