TitleRansomware Inside Out
Publication TypeConference Paper
Year of Publication2016
AuthorsMercaldo, F., Nardone, V., Santone, A.
Conference Name2016 11th International Conference on Availability, Reliability and Security (ARES)
ISBN Number978-1-5090-0990-9
Keywordsandroid, Androids, composability, formal method, formal methods, formal verification, Human Behavior, Humanoid robots, invasive software, Java, Malware, Metrics, Mobile communication, mobile computing, mobile environment, model checking, pubcrawl, ransomware, ransomware functionality, Resiliency, security, smart phones

Android is currently the most widely used mobile environment. This trend encourages malware writers to develop specific attacks targeting this platform with threats designed to covertly collect data or financially extort victims, the so-called ransomware. In this paper we use formal methods, in particular model checking, to automatically dissect ransomware samples. Starting from manual inspection of few samples, we define a set of rule in order to check whether the behaviours we find are representative of ransomware functionalities.

