FLDetect: An API-Based Ransomware Detection Using Federated Learning

被引:0
作者
Petros, Tomas [1 ]
Ghirmay, Henos [1 ]
Otoum, Safa [1 ]
Salem, Reem [1 ]
Debbah, Merouane [2 ]
机构
[1] Zayed Univ, Coll Technol Innovat CTI, Abu Dhabi, U Arab Emirates
[2] Khalifa Univ Sci & Technol, Abu Dhabi, U Arab Emirates
来源
IEEE CONFERENCE ON GLOBAL COMMUNICATIONS, GLOBECOM | 2023年
关键词
Federated Learning (FL); Ransomware Detection; API; Windows Security;
D O I
10.1109/GLOBECOM54140.2023.10437540
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Ransomware, a malicious piece of software responsible for several high-profile attacks in recent years, poses a significant threat to organizations of all sizes. Such attacks can cause significant operational and financial harm, including system interruptions and compromises of system integrity. By developing the ability to detect and prevent ransomware attacks, we can contribute to the creation of a more secure and safe digital ecosystem. In this research, we propose FLDetect, a unique Federated Learning (FL)-based method for identifying ransomware on Windows machines. Windows machines, integral to Internet of Things (IoT) networks, can act as brokers to other sensor nodes, rendering them susceptible to such attacks. Our approach utilizes distributed computing to train a Machine Learning (ML) model using data from various devices without relying on centralized data storage. The API-call-pattern-based detection method is the preferred approach for detecting ransomware in this paper. We made use of an open-source dataset, known as ransomwaredataset2016, for a comparable objective. The global model's accuracy was 93.1% after we trained it with twenty different devices. Our results demonstrate that our method is effective in identifying ransomware while maintaining the privacy and security of the training data by utilizing FL.
引用
收藏
页码:4449 / 4454
页数:6
相关论文
共 50 条
  • [41] Adaptive Ransomware Detection Using Similarity-Preserving Hashing
    Almajali, Anas
    Elmosalamy, Adham
    Safwat, Omar
    Abouelela, Hassan
    APPLIED SCIENCES-BASEL, 2024, 14 (20):
  • [42] Machine learning-based ransomware classification of Bitcoin transactions
    Dib, Omar
    Nan, Zhenghan
    Liu, Jinkua
    JOURNAL OF KING SAUD UNIVERSITY-COMPUTER AND INFORMATION SCIENCES, 2024, 36 (01)
  • [43] RanSMAP: Open dataset of Ransomware Storage and Memory Access Patterns for creating deep learning based ransomware detectors
    Hirano, Manabu
    Kobayashi, Ryotaro
    COMPUTERS & SECURITY, 2025, 150
  • [44] Enhancing ransomware defense: deep learning-based detection and family-wise classification of evolving threats
    Hussain, Amjad
    Saadia, Ayesha
    Alhussein, Musaed
    Gul, Ammara
    Aurangzeb, Khursheed
    PEERJ, 2024, 10 : 1 - 44
  • [45] Dynamic Malware Detection using API Similarity
    Alkhateeb, Ehab M.
    2017 IEEE INTERNATIONAL CONFERENCE ON COMPUTER AND INFORMATION TECHNOLOGY (CIT), 2017, : 297 - 301
  • [46] Integrating Ebola optimization search algorithm for enhanced deep learning-based ransomware detection in Internet of Things security
    Alzahrani, Ibrahim R.
    Allafi, Randa
    AIMS MATHEMATICS, 2024, 9 (03): : 6784 - 6802
  • [47] API-Prefer: An API Package Recommender System Based on Composition Feature Learning
    Liu, Yancen
    Cao, Jian
    SERVICE-ORIENTED COMPUTING (ICSOC 2020), 2020, 12571 : 500 - 507
  • [48] DeepRan: Attention-based BiLSTM and CRF for Ransomware Early Detection and Classifcation
    Roy, Krishna Chandra
    Chen, Qian
    INFORMATION SYSTEMS FRONTIERS, 2021, 23 (02) : 299 - 315
  • [49] Blockchain data with Ransomware detection based on deep feed forward Maxout network
    Srinadh, Vemireddi
    Padmaja, Buddi
    Chigurukota, Dhanunjaya Rao
    Karreddula, Mallikharjuna Rao
    Maram, Balajee
    Das, Smritilekha
    ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2025, 150
  • [50] DeepRan: Attention-based BiLSTM and CRF for Ransomware Early Detection and Classification
    Krishna Chandra Roy
    Qian Chen
    Information Systems Frontiers, 2021, 23 : 299 - 315