TY - GEN
T1 - Ransomware Detection for Securing Hybrid Learning Environments in Educational Institutions
AU - Kampouris, Pavlos
AU - Jenkins, Paul
N1 - Publisher Copyright:
© The Author(s), under exclusive license to Springer Nature Switzerland AG 2026.
PY - 2026/5/17
Y1 - 2026/5/17
N2 - Ransomware has become a significant cybersecurity threat, particularly within the education sector. The sometimes-outdated infrastructure, limited security investment for robust defence and the high-value data, make institutions such as schools, colleges and universities valuable sources of information and therefore valuable targets. This paper investigates the anatomy of the attack, with the aim of suggesting the development of an ethical and functional anti-ransomware tool. A review of related material regarding existing anti-ransomware tools such as Bitdefender, Malwarebytes and Microsoft Defender which provide strong behavioural detection is examined and results presented, which provides the basis of the development; however, they often find it difficult working in the operating environments in the education sector, as they are developed to operate on up-to-date equipment, thus it can cause issues in detecting malware. Following the research, a pilot piece of software was developed to test and investigate the issues raised. The software was designed to detect and decrypt a ransomware file and folders.
AB - Ransomware has become a significant cybersecurity threat, particularly within the education sector. The sometimes-outdated infrastructure, limited security investment for robust defence and the high-value data, make institutions such as schools, colleges and universities valuable sources of information and therefore valuable targets. This paper investigates the anatomy of the attack, with the aim of suggesting the development of an ethical and functional anti-ransomware tool. A review of related material regarding existing anti-ransomware tools such as Bitdefender, Malwarebytes and Microsoft Defender which provide strong behavioural detection is examined and results presented, which provides the basis of the development; however, they often find it difficult working in the operating environments in the education sector, as they are developed to operate on up-to-date equipment, thus it can cause issues in detecting malware. Following the research, a pilot piece of software was developed to test and investigate the issues raised. The software was designed to detect and decrypt a ransomware file and folders.
KW - Cybersecurity
KW - Decryption
KW - Education sector
KW - Encryption
KW - Ransomware
UR - https://www.scopus.com/pages/publications/105040559141
U2 - 10.1007/978-3-032-16791-0_40
DO - 10.1007/978-3-032-16791-0_40
M3 - Conference contribution
AN - SCOPUS:105040559141
SN - 9783032167903
T3 - Lecture Notes in Networks and Systems
SP - 807
EP - 830
BT - Contributions Presented at the International Conference on Computing, Communication, Cybersecurity and AI - The C3AI 2025
A2 - Naik, Nitin
A2 - Grace, Paul
A2 - Jenkins, Paul
A2 - Prajapat, Shaligram
PB - Springer Science and Business Media Deutschland GmbH
T2 - International Conference on Computing, Communication, Cybersecurity and AI, C3AI 2025
Y2 - 10 July 2025 through 11 July 2025
ER -