Technical paper: Exploring the history and technology of ransomware

Filed Under: Malware, Ransomware, SophosLabs

Technical paper: Next Generation Fake Anti-VirusOver the last year, we have seen the resurgence of ransomware. Examples include fake FBI warnings and accompanying 'fines' to taking your data hostage.

Earlier this month, the arrest of a Ransomware gang was announced.

Our SophosLabs research shows that ransomware is second only to the Zeus/Zbot crimeware kit in popularity among malware distributors who use the Blackhole exploit kits. It is also significantly ahead of fake antivirus.

blackhole-payload-breakdown

Anand Ajjan, a senior researcher with SophosLabs, has been taking a close look at ransomware for a new technical paper. It provides interesting general history, as well as some in-depth detail for the technically minded.

He has dug into the tactics used by ransomware and its development, while examining improvements in technology and social engineering.

Anand tracks ransomware techniques from simple SMS payments through basic encryption to modern industrial grade public key encryption. He also writes about the dissecting of ransomware, even providing a technical case study of a Winlocker.

Read now: "Ransomware: Next-Generation Fake Antivirus"

, , , ,

You might like

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s

About the author

Richard manages SophosLabs' operations in the United States. His principal security interests are endpoint security and user education. When he's not worrying about digital perils he enjoys singing, much to the distress of his cat, whose name does not feature in any of his passwords.