Leveraging File Hash Monitoring as a Proactive Early Warning System for Cybersecurity

dc.contributor.advisorRodríguez, Lisabel
dc.contributor.authorReyes, Joshua A.
dc.date.accessioned2024-10-08T19:50:31Z
dc.date.available2024-10-08T19:50:31Z
dc.date.issued2024
dc.descriptionDesign Project Article for the Graduate Programs at Polytechnic University of Puerto Ricoen_US
dc.description.abstractThis study examines the behavior of Hidden Tear, an open-source ransomware, through a controlled attack conducted in a virtual environment. A Windows 11 virtual machine was utilized for the execution of the ransomware following several configuration adjustments and troubleshooting steps. A key aspect of the study involved the use of Autopsy to track and verify file hashes before, during, and after the ransomware attack. The findings indicate that although Hidden Tear alters the file hashes during the encryption process, it restores them to their original state upon decryption, thereby preserving file integrity. These results highlight the efficacy of file hash monitoring as a crucial technique for security analysts to detect and analyze ransomware attacks. The study advocates for further research into the development of automated hashing tools, which could significantly enhance the capabilities for rapid identification and prevention of ransomware threats by facilitating real-time monitoring of changes in file properties. Key Terms – file hashes, file integrity, hidden tear, ransomware.en_US
dc.identifier.citationReyes, J. A. (2024). Leveraging File Hash Monitoring as a Proactive Early Warning System for Cybersecurity [Unpublished manuscript]. Graduate School, Polytechnic University of Puerto Rico.en_US
dc.identifier.urihttps://hdl.handle.net/20.500.12475/2753
dc.language.isoenen_US
dc.publisherPolytechnic University of Puerto Ricoen_US
dc.relation.haspartSan Juanen_US
dc.relation.ispartofComputer Science Program;
dc.relation.ispartofseriesSpring-2024;
dc.rights.holderPolytechnic University of Puerto Rico, Graduate Schoolen_US
dc.rights.licenseAll rights reserveden_US
dc.subject.lcshPolytechnic University of Puerto Rico--Graduate students--Researchen_US
dc.subject.lcshPolytechnic University of Puerto Rico--Graduate students--Postersen_US
dc.subject.lcshPolytechnic University of Puerto Rico--Subject headings--Unassigneden_US
dc.titleLeveraging File Hash Monitoring as a Proactive Early Warning System for Cybersecurityen_US
dc.typeArticleen_US

Files

Original bundle

Now showing 1 - 2 of 2
Loading...
Thumbnail Image
Name:
PUPR_CEAH_SJU_SP24_MCS_Joshua Reyes_Article.pdf
Size:
2.01 MB
Format:
Adobe Portable Document Format
Description:
PUPR_CEAH_SJU_SP24_MCS_Joshua Reyes_Article
Loading...
Thumbnail Image
Name:
PUPR_CEAH_SJU_SP24_MCS_Joshua Reyes_Poster.pdf
Size:
658.11 KB
Format:
Adobe Portable Document Format
Description:
PUPR_CEAH_SJU_SP24_MCS_Joshua Reyes_Poster

License bundle

Now showing 1 - 1 of 1
License Image
Name:
license.txt
Size:
1.63 KB
Format:
Item-specific license agreed upon to submission
Description:

Collections