Hands-on Cybersecurity Studies: Ransomware Key Recovery
Abstract
Ransomware is a type of malicious software that denies access to a computer system or files until a ransom is paid, usually in the form of cryptocurrency. It is typically spread through phishing emails or through websites where the software is downloaded without the user knowing; it can also spread by taking advantage of vulnerabilities in software running on the victims' devices. This report presents a hands-on exercise that demonstrates the effects of ransomware on vulnerable machines and guides participants through a set of steps that will regenerate the key required to decrypt the ransomed data.
Document Details
- Document Type
- Technical Report
- Publication Date
- Apr 07, 2020
- Accession Number
- AD1097107
Entities
People
- Adrian J. Belmontes
- Jaime C. Acosta
- Salamah Salamah
Organizations
- United States Army Research Laboratory