Author:
Alhashmi Asma A.,Darem Abdulbasit A.,Alshammari Ahmed B.,Darem Laith A.,Sheatah Huda K.,Effghi Rachid
Abstract
Ransomware has become a significant threat to individuals and organizations worldwide, causing substantial financial losses and disruptions. Early detection of ransomware is crucial to mitigate its impact. The significance of early detection lies in the capture of ransomware in the act of encrypting sample files, thus thwarting its progression. A timely response to ransomware is crucial to prevent the encryption of additional files, a scenario not adequately addressed by current antivirus programs. This study evaluates the performance of six machine-learning algorithms for ransomware detection, comparing the accuracy, precision, recall, and F1-score of Logistic Regression, Decision Tree, Naive Bayes, Random Forest, AdaBoost, and XGBoost. Additionally, their computational performance is evaluated, including build time, training time, classification speed, computational time, and Kappa statistic. This analysis provides insight into the practical feasibility of the algorithms for real-world deployment. The findings suggest that Random Forst, Decision Tree, and XGBoost are promising algorithms for ransomware detection due to their high accuracy of 99.37%, 99.42%, and 99.48%, respectively. These algorithms are also relatively efficient in terms of classification speed, which makes them suitable for real-time detection scenarios, as they can effectively identify ransomware samples even in the presence of noise and data variations.
Publisher
Engineering, Technology & Applied Science Research
Reference29 articles.
1. D. Dang, F. D. Troia, and M. Stamp, "Malware Classification using Long Short-term Memory Models," in Proceedings of the 7th International Conference on Information Systems Security and Privacy, Apr. 2024, pp. 743–752.
2. A. Moses and S. Morris, "Analysis of Mobile Malware: A Systematic Review of Evolution and Infection Strategies," Journal of Information Security and Cybercrimes Research, vol. 4, no. 2, pp. 103–131, Dec. 2021.
3. "Playing with Lives: Cyberattacks on Healthcare are Attacks on People," CyberPeace Institute, 2021.
4. D. Hummer and J. M. Byrne, Handbook on Crime and Technology. Cheltenham, UK: Edward Elgar Publishing, 2023.
5. M. Rigaki and S. Garcia, "Bringing a GAN to a Knife-Fight: Adapting Malware Communication to Avoid Detection," in 2018 IEEE Security and Privacy Workshops (SPW), San Francisco, CA, USA, May 2018, pp. 70–75.