University of Twente Student Theses
The new generation of ransomware : an in depth study of Ransomware-as-a-Service
Keijzer, N. (2020) The new generation of ransomware : an in depth study of Ransomware-as-a-Service.
PDF
3MB |
Abstract: | Ransomware is a problem that is becoming more prevalent as companies start to rely more on IT infrastructure. Ransomware causes major damages to companies and has recently emerged in a new form, Ransomware-as-a-Service (RaaS). RaaS allows cyber-criminals without the skills to write their own ransomware to deploy a "rented" version. A RaaS strain, is compared to a regular ransomware strain. Differences and common properties are discovered and are evaluated using existing works on other ransomware strains. From these characteristics it follows that RaaS is at least as advanced if not more advanced than the most sophisticated regular ransomware. Several possible mitigation techniques are proposed to reduce the impact of RaaS. Finally, it is shown how these differences and common properties can aid in a criminal investigation. REvil is also compared to an older RaaS strain, GandCrab. Differences and common properties are found for these two strains and evaluated using analyses of other RaaS strains. From these properties it is found that RaaS is moving towards using more advanced encryption techniques and making the ransomware more configurable. Finally RaaS has moved towards a model that is able to encrypt systems independent from Command & Control servers. |
Item Type: | Essay (Master) |
Faculty: | EEMCS: Electrical Engineering, Mathematics and Computer Science |
Subject: | 54 computer science |
Programme: | Computer Science MSc (60300) |
Link to this item: | https://purl.utwente.nl/essays/81595 |
Export this item as: | BibTeX EndNote HTML Citation Reference Manager |
Repository Staff Only: item control page