Matches in SemOpenAlex for { <https://semopenalex.org/work/W3127363298> ?p ?o ?g. }
Showing items 1 to 77 of
77
with 100 items per page.
- W3127363298 abstract "The commoditization of Malware-as-a-Service (MaaS) allows criminals to obtain financial benefits at a low risk and with little technical background. One such popular product in the underground economy is ransomware. In ransomware attacks, data from infected systems is held hostage (encrypted) until a fee is paid to the criminals. This modus operandi disrupts legitimate businesses, which may become unavailable until the data is restored. A recent blackmailing strategy adopted by criminals is to leak data online from the infected systems if the ransom is not paid. Besides reputational damage, data leakage might produce further economical losses due to fines imposed by data protection laws. Thus, research on prevention and recovery measures to mitigate the impact of such attacks is needed to adapt existing countermeasures to new strains. In this work, we perform an in-depth analysis of Avaddon, a ransomware offered in the underground economy as an affiliate program business. This has infected and leaked data from at least 23 organizations. Additionally, it runs Distributed Denial-of-Service (DDoS) attacks against victims that do not pay the ransom. We first provide an analysis of the criminal business model from the underground economy. Then, we identify and describe its technical capabilities. We provide empirical evidence of links between this variant and a previous family, suggesting that the same group was behind the development and, possibly, the operation of both campaigns. Finally, we describe a method to decrypt files encrypted with Avaddon in real time. We implement and test the decryptor in a tool that can recover the encrypted data from an infected system, thus mitigating the damage caused by the ransomware. The tool is released open-source so it can be incorporated in existing Antivirus engines." @default.
- W3127363298 created "2021-02-15" @default.
- W3127363298 creator A5007038327 @default.
- W3127363298 creator A5065221727 @default.
- W3127363298 date "2021-02-09" @default.
- W3127363298 modified "2023-09-27" @default.
- W3127363298 title "Avaddon ransomware: an in-depth analysis and decryption of infected systems" @default.
- W3127363298 cites W2461373307 @default.
- W3127363298 cites W2601591992 @default.
- W3127363298 cites W2614042168 @default.
- W3127363298 cites W2762111930 @default.
- W3127363298 cites W2891270452 @default.
- W3127363298 cites W2911311548 @default.
- W3127363298 cites W2962912862 @default.
- W3127363298 cites W3011893736 @default.
- W3127363298 hasPublicationYear "2021" @default.
- W3127363298 type Work @default.
- W3127363298 sameAs 3127363298 @default.
- W3127363298 citedByCount "0" @default.
- W3127363298 crossrefType "posted-content" @default.
- W3127363298 hasAuthorship W3127363298A5007038327 @default.
- W3127363298 hasAuthorship W3127363298A5065221727 @default.
- W3127363298 hasConcept C108827166 @default.
- W3127363298 hasConcept C110875604 @default.
- W3127363298 hasConcept C136764020 @default.
- W3127363298 hasConcept C144133560 @default.
- W3127363298 hasConcept C148730421 @default.
- W3127363298 hasConcept C165609540 @default.
- W3127363298 hasConcept C17744445 @default.
- W3127363298 hasConcept C199539241 @default.
- W3127363298 hasConcept C2777667771 @default.
- W3127363298 hasConcept C2781426709 @default.
- W3127363298 hasConcept C38652104 @default.
- W3127363298 hasConcept C38822068 @default.
- W3127363298 hasConcept C41008148 @default.
- W3127363298 hasConcept C541664917 @default.
- W3127363298 hasConceptScore W3127363298C108827166 @default.
- W3127363298 hasConceptScore W3127363298C110875604 @default.
- W3127363298 hasConceptScore W3127363298C136764020 @default.
- W3127363298 hasConceptScore W3127363298C144133560 @default.
- W3127363298 hasConceptScore W3127363298C148730421 @default.
- W3127363298 hasConceptScore W3127363298C165609540 @default.
- W3127363298 hasConceptScore W3127363298C17744445 @default.
- W3127363298 hasConceptScore W3127363298C199539241 @default.
- W3127363298 hasConceptScore W3127363298C2777667771 @default.
- W3127363298 hasConceptScore W3127363298C2781426709 @default.
- W3127363298 hasConceptScore W3127363298C38652104 @default.
- W3127363298 hasConceptScore W3127363298C38822068 @default.
- W3127363298 hasConceptScore W3127363298C41008148 @default.
- W3127363298 hasConceptScore W3127363298C541664917 @default.
- W3127363298 hasLocation W31273632981 @default.
- W3127363298 hasOpenAccess W3127363298 @default.
- W3127363298 hasPrimaryLocation W31273632981 @default.
- W3127363298 hasRelatedWork W1744516873 @default.
- W3127363298 hasRelatedWork W2090640412 @default.
- W3127363298 hasRelatedWork W2186987378 @default.
- W3127363298 hasRelatedWork W2398477375 @default.
- W3127363298 hasRelatedWork W2559085720 @default.
- W3127363298 hasRelatedWork W2775582065 @default.
- W3127363298 hasRelatedWork W2886509102 @default.
- W3127363298 hasRelatedWork W2889321817 @default.
- W3127363298 hasRelatedWork W2897464020 @default.
- W3127363298 hasRelatedWork W2962848982 @default.
- W3127363298 hasRelatedWork W2964829536 @default.
- W3127363298 hasRelatedWork W2994287689 @default.
- W3127363298 hasRelatedWork W3021304233 @default.
- W3127363298 hasRelatedWork W3035720665 @default.
- W3127363298 hasRelatedWork W3092762857 @default.
- W3127363298 hasRelatedWork W3105514371 @default.
- W3127363298 hasRelatedWork W3158801910 @default.
- W3127363298 hasRelatedWork W3209840240 @default.
- W3127363298 hasRelatedWork W3210918172 @default.
- W3127363298 hasRelatedWork W2188334999 @default.
- W3127363298 isParatext "false" @default.
- W3127363298 isRetracted "false" @default.
- W3127363298 magId "3127363298" @default.
- W3127363298 workType "article" @default.