A Double-Shell Structured Ransomware Defense Method Tailored for the RaaS Model


연구 분야: Verification



학회: International Conference on Cyberspace Simulation and Evaluation


초록

Ransomware attacks have become a significant cybersecurity threat, with the Ransomware as a Service (RaaS) paradigm enabling attackers with limited technical expertise to launch sophisticated campaigns. There is currently a lack of systematic research specifically targeting RaaS-type ransomware. This paper analyzes the operational mechanisms of RaaS ransomware, including its industry chain, attack processes, and technical characteristics. We propose a formalized RaaS attack model, providing a clear understanding of its operational methods. To address the limitations of existing defense methods, we introduce an innovative double-shell structured defense model. Utilizing Hook technology and a token verification mechanism, it effectively prevents ransomware from encrypting user data. We demonstrate the effectiveness of this model through experimental validation with a document protection program named RansomShield, achieving a 100% success rate in defending against real ransomware attacks.


Author Profile
Monan Chen

Key Laboratory of Trustworthy Distributed Computing and Service Ministry of Education Beijing University of Posts and Telecommunications Beijing China

Andorra
Author Profile
Tiantian Ji

Key Laboratory of Trustworthy Distributed Computing and Service Ministry of Education Beijing University of Posts and Telecommunications Beijing China

Andorra
Author Profile
Shudong Li

Cyberspace Institute of Advanced Technology Guangzhou University Guangzhou China

China

📄 논문 정보

발행 연도 2025년
인용수 0
출판 국가 Andorra, China
사이트 Springer
좋아요 수 0

연관 논문 목록 (58건)