A lifecycle aware dataset for Ransomware TTPs covering hardware, syscalls and network traffic, along with benign ware workloads dataset for ML model training uses.
Two sets of execution traces from two object-oriented applications: CrossFTP (an FTP client), Columba (an email client). An event in an execution trace denotes one method call from on object in the ap
This dataset comprises 2,721 entries of ransomware (EXEs), with 700 labeled as benign and the remaining as malicious. Each entry contains static metadata attributes including MD5 hash, name, timestamp