{"id":"https://openalex.org/W2906262305","doi":"https://doi.org/10.1109/ccst.2018.8585650","title":"Why Ransomware Needs A Human Touch","display_name":"Why Ransomware Needs A Human Touch","publication_year":2018,"publication_date":"2018-10-01","ids":{"openalex":"https://openalex.org/W2906262305","doi":"https://doi.org/10.1109/ccst.2018.8585650","mag":"2906262305"},"language":"en","primary_location":{"id":"doi:10.1109/ccst.2018.8585650","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ccst.2018.8585650","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2018 International Carnahan Conference on Security Technology (ICCST)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5040081734","display_name":"Ana Ferreira","orcid":"https://orcid.org/0000-0002-0953-9411"},"institutions":[{"id":"https://openalex.org/I182534213","display_name":"Universidade do Porto","ror":"https://ror.org/043pwc612","country_code":"PT","type":"education","lineage":["https://openalex.org/I182534213"]}],"countries":["PT"],"is_corresponding":true,"raw_author_name":"Ana Ferreira","raw_affiliation_strings":["Faculty of Medicine, University of Porto, Porto, Portugal"],"affiliations":[{"raw_affiliation_string":"Faculty of Medicine, University of Porto, Porto, Portugal","institution_ids":["https://openalex.org/I182534213"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":1,"corresponding_author_ids":["https://openalex.org/A5040081734"],"corresponding_institution_ids":["https://openalex.org/I182534213"],"apc_list":null,"apc_paid":null,"fwci":0.8257,"has_fulltext":false,"cited_by_count":17,"citation_normalized_percentile":{"value":0.74640324,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"5"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11800","display_name":"User Authentication and Security Systems","score":0.9937999844551086,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11644","display_name":"Spam and Phishing Detection","score":0.9923999905586243,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/ransomware","display_name":"Ransomware","score":0.9639232158660889},{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.7277510166168213},{"id":"https://openalex.org/keywords/phishing","display_name":"Phishing","score":0.6805838346481323},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6710500717163086},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6418933868408203},{"id":"https://openalex.org/keywords/mobile-malware","display_name":"Mobile malware","score":0.6295010447502136},{"id":"https://openalex.org/keywords/backup","display_name":"Backup","score":0.5258339643478394},{"id":"https://openalex.org/keywords/malware-analysis","display_name":"Malware analysis","score":0.49797725677490234},{"id":"https://openalex.org/keywords/workflow","display_name":"Workflow","score":0.4896424412727356},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.4688853919506073},{"id":"https://openalex.org/keywords/social-engineering","display_name":"Social engineering (security)","score":0.46543803811073303},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.16829171776771545},{"id":"https://openalex.org/keywords/the-internet","display_name":"The Internet","score":0.08853816986083984}],"concepts":[{"id":"https://openalex.org/C2777667771","wikidata":"https://www.wikidata.org/wiki/Q926331","display_name":"Ransomware","level":3,"score":0.9639232158660889},{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.7277510166168213},{"id":"https://openalex.org/C83860907","wikidata":"https://www.wikidata.org/wiki/Q135005","display_name":"Phishing","level":3,"score":0.6805838346481323},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6710500717163086},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6418933868408203},{"id":"https://openalex.org/C2780967490","wikidata":"https://www.wikidata.org/wiki/Q1291200","display_name":"Mobile malware","level":3,"score":0.6295010447502136},{"id":"https://openalex.org/C2780945871","wikidata":"https://www.wikidata.org/wiki/Q194274","display_name":"Backup","level":2,"score":0.5258339643478394},{"id":"https://openalex.org/C2779395397","wikidata":"https://www.wikidata.org/wiki/Q15731404","display_name":"Malware analysis","level":3,"score":0.49797725677490234},{"id":"https://openalex.org/C177212765","wikidata":"https://www.wikidata.org/wiki/Q627335","display_name":"Workflow","level":2,"score":0.4896424412727356},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.4688853919506073},{"id":"https://openalex.org/C70118762","wikidata":"https://www.wikidata.org/wiki/Q376934","display_name":"Social engineering (security)","level":2,"score":0.46543803811073303},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.16829171776771545},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.08853816986083984},{"id":"https://openalex.org/C77088390","wikidata":"https://www.wikidata.org/wiki/Q8513","display_name":"Database","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/ccst.2018.8585650","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ccst.2018.8585650","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2018 International Carnahan Conference on Security Technology (ICCST)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320335322","display_name":"European Regional Development Fund","ror":"https://ror.org/00k4n6c32"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":21,"referenced_works":["https://openalex.org/W1972416255","https://openalex.org/W2296579688","https://openalex.org/W2552218842","https://openalex.org/W2559964890","https://openalex.org/W2624844347","https://openalex.org/W2738263528","https://openalex.org/W2744640775","https://openalex.org/W2750688159","https://openalex.org/W2766662076","https://openalex.org/W2775252980","https://openalex.org/W2779814706","https://openalex.org/W2783466036","https://openalex.org/W2784113120","https://openalex.org/W2786630598","https://openalex.org/W2786702830","https://openalex.org/W2786921024","https://openalex.org/W2787072013","https://openalex.org/W2793975380","https://openalex.org/W6739386775","https://openalex.org/W6742164123","https://openalex.org/W6747295137"],"related_works":["https://openalex.org/W2964256930","https://openalex.org/W2944809083","https://openalex.org/W3159552247","https://openalex.org/W4229025036","https://openalex.org/W4292056024","https://openalex.org/W2737752763","https://openalex.org/W2572193563","https://openalex.org/W2945832014","https://openalex.org/W4391182755","https://openalex.org/W2765340726"],"abstract_inverted_index":{"Ransomware":[0],"is":[1,59],"currently":[2],"one":[3],"of":[4,36,49,107,125,130,150,153,161,175],"the":[5,12,21,43,84,88,94,108,123,159,176],"biggest":[6],"threats":[7],"in":[8,17,20,55],"malware":[9,75,188],"attacks.":[10],"Although":[11],"first":[13],"known":[14],"attack":[15,85],"occurred":[16],"1989,":[18],"only":[19,66],"last":[22],"6":[23],"years":[24],"has":[25],"this":[26,64,99,101],"threat":[27],"greatly":[28,82],"increased":[29,47],"and":[30,40,46,71,128,164,170,194,215,227,233],"become":[31],"more":[32,172,199],"sophisticated.":[33],"The":[34],"lack":[35],"adequate":[37],"security":[38],"measures":[39],"awareness":[41],"propelled":[42],"rapid":[44],"spread":[45],"severity":[48],"ransomware":[50,54,126,142,154,202],"variants":[51],"(e.g.,":[52,191],"WannaCry":[53],"2017).":[56],"Further,":[57],"there":[58],"little":[60],"research":[61,95,189,203],"work":[62,96,120],"on":[63,87,98,110,122,137,213],"matter,":[65],"traditional":[67],"protections":[68],"are":[69,78,219],"available":[70],"even":[72],"state-of-the-art":[73],"mobile":[74,89],"detection":[76,131],"approaches":[77,190],"still":[79],"ineffective.":[80],"This":[81,144],"increases":[83],"surface":[86],"domain.":[90],"To":[91],"better":[92],"understand":[93,171,228],"performed":[97],"subject,":[100],"paper":[102,145],"presents":[103,147],"a":[104,151],"detailed":[105],"review":[106],"literature":[109],"ransomware,":[111],"existing":[112],"mainly":[113,212],"since":[114],"2015.":[115],"Results":[116],"show":[117],"that":[118,224],"most":[119],"focus":[121,136,211],"analysis":[124,149],"structures":[127],"development/testing":[129],"solutions.":[132],"Very":[133],"few":[134],"studies":[135],"human":[138,173],"related":[139,220],"solutions":[140,223],"or":[141],"prevention.":[143],"also":[146],"an":[148],"sample":[152],"email":[155,192],"subject":[156],"lines":[157],"regarding":[158],"integration":[160],"persuasion":[162],"content":[163],"targeted/personal":[165],"aspects,":[166],"so":[167],"to":[168,180,184,221],"identify":[169],"aspects":[174],"attack.":[177],"In":[178],"order":[179],"avoid":[181],"mistakes":[182],"similar":[183],"other":[185],"social":[186],"engineering":[187],"phishing":[193],"scams),":[195],"which":[196,218],"have":[197],"been":[198],"comprehensively":[200],"studied,":[201],"direction":[204],"must":[205,210],"be":[206],"completely":[207],"reversed.":[208],"It":[209],"prevention":[214],"backup/restoring":[216],"procedures,":[217],"sociotechnical":[222],"can":[225],"manage":[226],"users'":[229],"awareness,":[230],"workflow,":[231],"behaviours":[232],"needs.":[234]},"counts_by_year":[{"year":2025,"cited_by_count":1},{"year":2024,"cited_by_count":4},{"year":2023,"cited_by_count":4},{"year":2022,"cited_by_count":3},{"year":2021,"cited_by_count":3},{"year":2020,"cited_by_count":2}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
