Automated Ransomware Detection using Pattern-Entropy Segmentation Analysis: A Novel Approach to Network Security

preprint OA: closed CC-BY-NC-ND-4.0
📄 Open PDF View at publisher

Abstract

Ransomware continues to pose a significant and evolving threat to organizations, exploiting vulnerabilities in network security to encrypt sensitive data and demand ransom. A novel approach is introduced in this research through the Pattern-Entropy Segmentation Analysis (PESA) framework, which enhances detection capabilities through real-time entropy analysis of network traffic, offering a more granular and timely identification of ransomware. Unlike traditional signature or behavior-based methods, PESA identifies early-stage anomalies caused by ransomware encryption processes through entropy fluctuations, ensuring rapid detection before critical damage occurs. The framework is evaluated in a controlled network simulation environment, demonstrating its ability to maintain high detection accuracy across multiple ransomware strains, with minimal false positives and rapid response times. Furthermore, the system shows resilience against obfuscation techniques, making it a robust solution for real-world cybersecurity applications. The findings underscore the practical impact of entropy-based detection in strengthening network defenses and mitigating the damage caused by ransomware attacks.

My notes (saved in your browser only)

Citation neighborhood (no data yet)

We don't have any in-corpus citations linked to this paper yet. This is a recent paper (2024) — citers typically take a year or two to land, and the OpenAlex reference graph may still be filling in.

Source provenance

europepmc
last seen: 2026-05-20T01:45:00.602351+00:00
unpaywall
last seen: 2026-05-24T02:00:01.246996+00:00
License: CC-BY-NC-ND-4.0