51 citations · 136 across the 6 of their papers we have counts for
7 papers · 1 filter
Comparison of Entropy Calculation Methods for Ransomware Encrypted File Identification
Simon R Davies, Richard Macfarlane, William J. Buchanan
Ransomware is a malicious class of software that utilises encryption to implement an attack on system availability. The target's data remains encrypted and is held captive by the a…
NapierOne: A modern mixed file data set alternative to Govdocs1
Simon R Davies, Richard Macfarlane, William J Buchanan
It was found when reviewing the ransomware detection research literature that almost no proposal provided enough detail on how the test data set was created, or sufficient descript…
Differential Area Analysis for Ransomware Attack Detection within Mixed File Datasets
Simon R Davies, Richard Macfarlane, William J Buchanan
The threat from ransomware continues to grow both in the number of affected victims as well as the cost incurred by the people and organisations impacted in a successful attack. In…
Evaluation of Live Forensic Techniques in Ransomware Attack Mitigation
Simon R. Davies, Richard Macfarlane, William J. Buchanan
Memory was captured from a system infected by ransomware and its contents was examined using live forensic tools, with the intent of identifying the symmetric encryption keys being…
Towards Identifying Human Actions, Intent, and Severity of APT Attacks Applying Deception Techniques -- An Experiment
Joel Chacon, Sean McKeown, Richard Macfarlane
Attacks by Advanced Persistent Threats (APTs) have been shown to be difficult to detect using traditional signature- and anomaly-based intrusion detection approaches. Deception tec…
Wi-Fi Channel Saturation as a Mechanism to Improve Passive Capture of Bluetooth Through Channel Usage Restriction
Ian Lowe, William J Buchanan, Richard J Macfarlane +1
Bluetooth is a short-range wireless technology that provides audio and data links between personal smartphones and playback devices, such as speakers, headsets and car entertainmen…