Showing the Receipts: Understanding the Modern Ransomware Ecosystem
Jack Cable, Ian W. Gray, Damon McCoy

TL;DR
This paper introduces new methods to identify and analyze ransomware payments, resulting in the largest public dataset of over $900 million, which enhances understanding of ransomware group activities over time.
Contribution
The paper presents novel techniques for detecting ransomware payments with low false positives and releases the largest public dataset of ransomware transactions to date.
Findings
Classified nearly $700 million in previously unreported ransomware payments.
Published the largest public dataset of over $900 million in ransomware payments.
Provided insights into ransomware group behaviors over time.
Abstract
Ransomware attacks continue to wreak havoc across the globe, with public reports of total ransomware payments topping billions of dollars annually. While the use of cryptocurrency presents an avenue to understand the tactics of ransomware actors, to date published research has been constrained by relatively limited public datasets of ransomware payments. We present novel techniques to identify ransomware payments with low false positives, classifying nearly $700 million in previously-unreported ransomware payments. We publish the largest public dataset of over $900 million in ransomware payments -- several times larger than any existing public dataset. We then leverage this expanded dataset to present an analysis focused on understanding the activities of ransomware groups over time. This provides unique insights into ransomware behavior and a corpus for future study of ransomware…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Code & Models
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsAdvanced Malware Detection Techniques · Cybercrime and Law Enforcement Studies · Digital Games and Media
