Addressing Crypto-Ransomware Attacks: Before You Decide whether To-Pay or Not-To
Aaron Zimba, Zhaoshun Wang, Mumbi Chishimba · Journal of Computer Information Systems · 2019
Crypto-ransomware attacks have forced victims to part away with millions of dollars using various intimidation and scare tactics. Victims have made hasty decisions of whether to pay or not without adequate information. In this paper, we explore options to address ransomware attacks before considering whether to pay or not. We propose a ransomware categorization framework that classifies the virulence of a ransomware attack using a proposed classification algorithm that is based on data deletion and file encryption attack structures. The categories that increase in severity from CAT1 to CAT8 classify the technical prowess and the overall effectiveness of potential ways of retaining the data without paying the ransom demand. The framework provides an avenue for a deeper comprehension of potential inadequacies and flaws to be exploited for data recovery. Results show that poorly implemented attack structures make recovery of data possible via system volume shadow copies or third-party software without paying.