Anti-ransomware method based on active deception

Considering the serious threat that ransomware poses to data security and the increasing intelligence and complexity of its attack methods, an anti-ransomware method based on active deception was proposed to address the limitations of traditional defense methods. By combining static heuristic algori...

Full description

Saved in:
Bibliographic Details
Main Authors: CHEN Kai, MA Duohe, TANG Zhimin, DAI Jun
Format: Article
Language:zho
Published: Editorial Department of Journal on Communications 2024-07-01
Series:Tongxin xuebao
Subjects:
Online Access:http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2024120/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1841539235006382080
author CHEN Kai
MA Duohe
TANG Zhimin
DAI Jun
author_facet CHEN Kai
MA Duohe
TANG Zhimin
DAI Jun
author_sort CHEN Kai
collection DOAJ
description Considering the serious threat that ransomware poses to data security and the increasing intelligence and complexity of its attack methods, an anti-ransomware method based on active deception was proposed to address the limitations of traditional defense methods. By combining static heuristic algorithms and dynamic heuristic algorithms to dynamically deploy deceptive files, a dynamic file security model based on active deception was established. Different strategies were employed to generate dynamic deceptive files for ransomware of different risk levels, confusing ransomware by simulating the characteristics of real data, making it unable to distinguish between real and deceptive data, thus protecting users’ real data from encryption or destruction. Experimental results show that the proposed method effectively increases the dynamism, diversity, and deceptiveness of files, significantly expanding the shifting space of data attack surfaces and effectively defending against ransomware attacks.
format Article
id doaj-art-d21210df050f410b90678cf7ac867fa5
institution Kabale University
issn 1000-436X
language zho
publishDate 2024-07-01
publisher Editorial Department of Journal on Communications
record_format Article
series Tongxin xuebao
spelling doaj-art-d21210df050f410b90678cf7ac867fa52025-01-14T07:24:39ZzhoEditorial Department of Journal on CommunicationsTongxin xuebao1000-436X2024-07-014514815867384548Anti-ransomware method based on active deceptionCHEN KaiMA DuoheTANG ZhiminDAI JunConsidering the serious threat that ransomware poses to data security and the increasing intelligence and complexity of its attack methods, an anti-ransomware method based on active deception was proposed to address the limitations of traditional defense methods. By combining static heuristic algorithms and dynamic heuristic algorithms to dynamically deploy deceptive files, a dynamic file security model based on active deception was established. Different strategies were employed to generate dynamic deceptive files for ransomware of different risk levels, confusing ransomware by simulating the characteristics of real data, making it unable to distinguish between real and deceptive data, thus protecting users’ real data from encryption or destruction. Experimental results show that the proposed method effectively increases the dynamism, diversity, and deceptiveness of files, significantly expanding the shifting space of data attack surfaces and effectively defending against ransomware attacks.http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2024120/active deceptionanti-ransomwaredata attack surfacedata deception
spellingShingle CHEN Kai
MA Duohe
TANG Zhimin
DAI Jun
Anti-ransomware method based on active deception
Tongxin xuebao
active deception
anti-ransomware
data attack surface
data deception
title Anti-ransomware method based on active deception
title_full Anti-ransomware method based on active deception
title_fullStr Anti-ransomware method based on active deception
title_full_unstemmed Anti-ransomware method based on active deception
title_short Anti-ransomware method based on active deception
title_sort anti ransomware method based on active deception
topic active deception
anti-ransomware
data attack surface
data deception
url http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2024120/
work_keys_str_mv AT chenkai antiransomwaremethodbasedonactivedeception
AT maduohe antiransomwaremethodbasedonactivedeception
AT tangzhimin antiransomwaremethodbasedonactivedeception
AT daijun antiransomwaremethodbasedonactivedeception