On the Economic Significance of Ransomware Campaigns: A Bitcoin Transactions Perspective

نویسندگان

  • Mauro Conti
  • Ankit Gangwal
  • Sushmita Ruj
چکیده

Bitcoin cryptocurrency system enables users to transact securely and pseudo-anonymously by using an arbitrary number of aliases (Bitcoin addresses). Cybercriminals exploit these characteristics to commit immutable and presumably untraceable monetary fraud, especially via ransomware. In this paper, we present our comprehensive study on all recent ransomware and report the economic impact of such ransomware from the Bitcoin payment perspective. To this end, we present a lightweight framework to identify, collect, and analyze Bitcoin addresses managed by the same user or group of users (cybercriminals, in our case) and a novel approach for classifying a payment as ransom. To verify the correctness of our approach, we compared our findings on CryptoLocker ransomware with the results presented in the literature. And, we found that our results align with the results presented in the previous works except for the final valuation in USD. Our aim was to accurately measure the USD worth of these payments. Hence, we used the average Bitcoin price on the day of each ransom payment whereas the authors of the previous studies used the Bitcoin price on the day of their evaluation. Furthermore, for each investigated ransomware, we provide a holistic view of its genesis, development, the process of infection and execution, and characteristic of ransom demands. Finally, we also release our dataset for future investigations in this direction of research.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Visualizing Bitcoin Flows of Ransomware: WannaCry One Week Later

Because of its pseudo-anonimity and decentralisation characteristics, bitcoin payments are often a tool utilised by ransomware: this kind of malware infects a victim computer by encrypting some/all its data and/or denying the access to it. Then, the victim has to pay a given amount of bitcoins to see all the blocked functionalities restored. The goal of this paper is to visualise these bitcoin ...

متن کامل

WannaCry: Análisis del movimiento de recursos financieros en el blockchain de bitcoin

A ransomware is a type of malware through which an attacker extorts the user of a computer system, so that he can make a payment that is generally operated in the Bitcoin system. This study aims to measure the payment flows corresponding to ransomware WannaCry, in order to provide information about methods used by cybercriminals to move and hide the trace of the financial resources on Bitcoin B...

متن کامل

BitIodine: Extracting Intelligence from the Bitcoin Network

Bitcoin, the famous peer-to-peer, decentralized electronic currency system, allows users to benefit from pseudonymity, by generating an arbitrary number of aliases (or addresses) to move funds. However, the complete history of all transactions ever performed, called “blockchain”, is public and replicated on each node. The data it contains is di cult to analyze manually, but can yield a high num...

متن کامل

The impact of the expansion of virtual currencies (Bitcoin) on the amount of formal money demand (the country's money, rial) via CIA Model

The growing popularity of virtual currencies such as Bitcoin, an Internet innovation with a function similar to "fiat" money or government money, due to the high velocity and efficiency in transactions (especially overseas payments) as well as the elimination of the additional operating costs incurred by intermediaries attract the policymakers and global decision-making centers attention. The p...

متن کامل

Ransomware: A Rising Threat of new age Digital Extortion

What if someone stopped you from accessing your files or even using your computer? What if they demanded an amount to get the access back to you? With most financial and social interactions revolving around three critical aspects – firstly the use of digital data and files, secondly computer systems and last the unsecure internet. This is where Ransomware using Bitcoin has become a major cause ...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2018