YoVDO

UNVEIL - A Large-Scale, Automated Approach to Detecting Ransomware

Offered By: USENIX via YouTube

Tags

USENIX Security Courses Cybersecurity Courses Ransomware Courses Dynamic Analysis Courses Malware Detection Courses

Course Description

Overview

Explore a comprehensive conference talk on UNVEIL, an innovative automated system for detecting ransomware. Learn about the resurgence of ransomware attacks, including high-profile incidents like the Sony breach. Discover how UNVEIL operates by creating artificial user environments and monitoring file and desktop interactions to identify ransomware behavior. Examine the system's effectiveness in detecting previously unknown and evasive ransomware strains. Gain insights into different ransomware classes, evaluation methodologies, and the tool's performance against various data sources. Understand the significance of UNVEIL in advancing ransomware detection capabilities and its potential impact on cybersecurity efforts.

Syllabus

Introduction
What is ransomware
Typical ransom node
Recent resurgence of ransomware
Recent attack on hospitals
Canada
Massachusetts
Three Approaches
Thread Model
Tools and Techniques
Our Approach
Two Classes of Ransomware
Generated Content
Ransomware Families
Encryption
Similarity Score
Test System
Data Source
False Negative Cases
Unknown Data Set
Pollution Ratio
Summary
Silent Crypt
VirusTotal
Google Results
Conclusion
Question Answer


Taught by

USENIX

Related Courses

Computer Security
Stanford University via Coursera
Cryptography II
Stanford University via Coursera
Malicious Software and its Underground Economy: Two Sides to Every Story
University of London International Programmes via Coursera
Building an Information Risk Management Toolkit
University of Washington via Coursera
Introduction to Cybersecurity
National Cybersecurity Institute at Excelsior College via Canvas Network