Categories: NewsSecurity

Machine Learning-Based Security Tools Fail to Detect new Cerber Ransomware Strain

Machine learning is one of the most intriguing developments in the world of technology has seen so far. Unfortunately, there are limitations as to what this technology can do. A new update to the popular Cerber ransomware successfully evades machine learning techniques to remain undetected. A very disturbing development, as it goes to show how criminals continue to outsmart security experts

Even Machine Learning Can’t Block Ransomware

Finding a solution to keep ransomware off computers has proven to be far more difficult than initially assumed. Computer users with a level-headed approach are least likely to encounter malware types, yet there is always a chance ransomware infection will occur. Finding the right software solution to deal with such an attack is virtually impossible.

Security researchers were fairly confident machine learning-based tools would provide a solution. That does not appear to be the case, as a new version of Cerber ransomware has successfully evaded machine learning-based detection systems. Cybercriminals have once again raised the bar, and security researchers have to go back to the drawing board.

It is evident cybercirminals are closely monitoring the efforts made by security experts to fight ransomware attacks. It is the first time such a sophisticated direct response to changes in the malware detection sector have become apparent. In a way, this goes to show machine learning-based detection systems are seen as a legitimate threat by online criminals, yet bypassing these tools seems to be a trivial matter.

Related Post

To put this into perspective, the updated Cerber ransomware separates different stages of its malware into multiple files, which are all dynamically injected into a running process. This method allows the ransomware to remain undetected. Even when Cerber is distributed through email attachments, machine learning-based countermeasures are incapable of detecting the malware in question. The loader for this updated ransomware strain ensures it is not running in a protected environment before injecting the full binary into active computer processes.

For static machine learning tools, this becomes quite a problematic scenario. Detecting the individual pieces of Cerber is virtually impossible. Without these tools analyzing the fragments of Cerber, the machine learning-based tools fail to flag the code as potentially malicious. Static machine learning evaluates the content of a file, yet will not detect part of the Cerber code unless it is put together into its final form.

This new discovery will only dissuade even more companies from stepping up their malware protection tools. Very few companies believe machine learning and AI will make a big impact, and so far, they are proven right. Developing new tools takes trial and error runs, yet the tools remain to be far more flawed than originally assumed. A lot of work remains to be done, that much is certain.

If you liked this article, follow us on Twitter @themerklenews and make sure to subscribe to our newsletter to receive the latest bitcoin, cryptocurrency, and technology news.

JP Buntinx

JP Buntinx is a FinTech and Bitcoin enthusiast living in Belgium. His passion for finance and technology made him one of the world's leading freelance Bitcoin writers, and he aims to achieve the same level of respect in the FinTech sector.

Share
Published by
JP Buntinx

Recent Posts

Bitcoin Crashes Below $67,000 as $700 Million Wiped From Crypto Market in Hours

Bitcoin is bleeding. The world's largest cryptocurrency plunged to $66,997 on Tuesday, shedding over $6,750…

5 hours ago

Ripple’s RLUSD Goes Live in Türkiye, Hits $1.7 Billion Market Cap

Ripple is not pausing for breath. The company has brought its dollar-pegged stablecoin, $RLUSD, to…

9 hours ago

Bitwise Launches Its First Tokenized Fund With $259M in Assets and 4% Annual Yield

Bitwise Asset Management has just made its first move into tokenized funds, and it comes…

1 day ago

Binance Launches US Stocks and ETFs Trading for Non-US Users With Zero Commission

Binance just made a move that blurs the line between crypto exchange and traditional brokerage…

1 day ago

NEAR Protocol Ships Confidential Payments, Crosses $19B in Intents Volume, and Partners With Bermuda Government

NEAR Protocol has had a month that most blockchain projects would stretch across an entire…

2 days ago

Chainlink Records 7 New Integrations Across 6 Services and 4 Chains

Something is becoming increasingly clear about Chainlink, the integrations are not slowing down. The protocol…

2 days ago