Towards superior android ransomware detection: An ensemble machine learning perspective
Abstract
Ransomware remains a pervasive threat to Android devices, with its ability to encrypt critical data and demand ransoms causing significant disruptions to users and organizations alike. This research proposes a novel ensemble-based machine learning approach for the detection of Android ransomware, leveraging the strengths of multiple classifiers to enhance detection accuracy and robustness. Utilizing a comprehensive dataset comprising 203,556 network traffic records across 10 distinct ransomware types and benign traffic, we meticulously preprocess and feature-engineer the data to ensure optimal model performance. The methodology integrates various ensemble classifiers, evaluating each through rigorous cross-validation. Feature importance analysis using Random Forest identifies key indicators of ransomware activity, enabling us to refine our models and focus on the most predictive features. The results demonstrate that the ensemble models, particularly Bagging, achieve near-perfect detection rates, with precision, recall, and F1 scores consistently exceeding 99% for different binary attacks and multi-class classification. Finally, in-depth statistical analysis further validates the superiority of our approach, showcasing significant improvements over traditional machine learning methods. This research sets a new benchmark for Android ransomware detection, offering a robust, scalable, and highly accurate solution that enhances the security and resilience of mobile networks against evolving cyber threats.
Identifier Metadata
| Identifier | 110.0370/INT.2026.00344 |
| Canonical | mdoi:110.0370/INT.2026.00344 |
| Resolver URL | https://mdoi.org/110.0370/INT.2026.00344 |
| Resource URL | Open resource |
| Document URL | Open document |
| Content Type | Article |
| Authors | Md. Alamgir Hossain, Tahmid Hasan, Fahad Ahmed, Sheikh Hasib Cheragee, Muntasir Hasan Kanchan, Md Alimul Haque |
| Year | 2024 |
| Depositor | International Journal of Multidisciplinary Studies and Innovative Researchs Organisation |
| Prefix | 110.0370 |
| Registered | June 24, 2026 |
| Updated | June 24, 2026 |
| Status | Active |
| Visibility | Public |
Cite This Identifier
APA 7th Edition
Click to copy
MLA 9th Edition
Click to copy
Chicago 17th Edition
Click to copy
BibTeX
Click to copy
Persistent Identifier
mdoi:110.0370/INT.2026.00344Click to copy