Skip to main content
Kent Academic Repository

PaperW8: An IoT Bricking Ransomware Proof of Concept

Brierley, Calvin, Pont, Jamie, Arief, Budi, Barnes, David J., Hernandez-Castro, Julio C. (2020) PaperW8: An IoT Bricking Ransomware Proof of Concept. In: 15th International Conference on Availability, Reliability and Security (ARES '20). (82). (doi:10.1145/3407023.3407044) (KAR id:113335)

Abstract

Internet of Things (IoT) devices are used in many facets of modern life, from smart homes to smart cities, including Internet-enabled healthcare systems and industrial control systems. The prevalence and ubiquity of IoT devices makes them extremely attractive targets for malicious actors, in particular for taking control of vulnerable devices and demand ransom from their owners. The aim of this paper is twofold: to investigate the viability of a ransomware-type attack being carried out on IoT devices; and to explore what damage can be inflicted upon devices after they have been compromised. To test whether ransomware is a viable method for attacking IoT devices, we developed our own proof of concept malware for Linux-based IoT devices dubbed “PaperW8”. We looked at feasible ways for infecting IoT devices, as well as potential methods for gaining control and applying persistent changes to the target device. We successfully created a proof of concept ransomware, which we tested against six vulnerable IoT devices of various brands and functions, some of which are known to have been targeted in the past but are still widely in use today. Developing this proof of concept tool allowed us to identify the main requirements for a successful ransomware attack against IoT devices. We also determined some limitations of IoT devices that may discourage attackers from developing IoT-specific ransomware, while highlighting workarounds that more determined attackers may use to overcome these obstacles. This paper has demonstrated that IoT ransomware is a credible threat. We implemented a proof of concept tool that can compromise many IoT devices of varying types. We envisage that this work can be used to assist current and future IoT developers to improve the security of their devices, and also to help security researchers in implementing more effective ransomware countermeasures, including for IoT devices.

Item Type: Conference or workshop item (Proceeding)
DOI/Identification number: 10.1145/3407023.3407044
Uncontrolled keywords: IoT, Ransomware, Malware, Bricking, Security
Subjects: Q Science > QA Mathematics (inc Computing science)
Institutional Unit: Institutes > Institute of Cyber Security for Society
Former Institutional Unit:
There are no former institutional units.
Funders: Engineering and Physical Sciences Research Council (https://ror.org/0439y7842)
Depositing User: Budi Arief
Date Deposited: 06 Mar 2026 14:29 UTC
Last Modified: 06 Mar 2026 14:34 UTC
Resource URI: https://kar.kent.ac.uk/id/eprint/113335 (The current URI for this page, for reference purposes)

University of Kent Author Information

  • Depositors only (login required):

Total unique views of this page since July 2020. For more details click on the image.