Please wait ...
0% Complete
Home
/
15th International Conference on Computer and Knowledge Engineering
A Stacking Ensemble Framework for Ransomware Detection on the Bitcoin Blockchain Using Transaction Graph Analytics
Authors :
Mohammad Mobin Teymourpour
1
Parsa Hedayatnia
2
Mohammad Allahbakhsh
3
Haleh Amintoosi
4
1- Ferdowsi University of Mashhad
2- Ferdowsi University of Mashhad
3- Ferdowsi University of Mashhad
4- Ferdowsi University of Mashhad
Keywords :
Blockchain Security،Ransomware Detection،BitcoinHeist،Ensemble Learning،SMOTE-Tomek،Cybercrime Analytics
Abstract :
The growth of ransomware attacks has tracked the growing use of cryptocurrencies, and especially Bitcoin, as the payment medium of choice among cybercriminals. Although Bitcoin’s transparency provides traceability, pseudonymity complicates the attribution of malicious activity. In this work, we present a robust machine learning framework for detecting ransomware in the Bitcoin blockchain, grounded in fundamental blockchain principles and utilizing the Bitcoin-Heist dataset. We integrate graph-based transactional features, engineered behavioral indicators, and a two-stage classification pipeline to detect both ransomware-related addresses and their malware families. We overcome the challenges of class imbalance and sparse malicious samples using the SMOTETomek technique and verify improvements in separability using unsupervised clustering (K-Means and DBSCAN). For classification, we benchmark traditional and ensemble models, including Random Forest, XGBoost, LightGBM, CatBoost, and a Stacking Ensemble for classification. The ensemble model delivers state-of-the-art performance with an F1-score of 98.07% while maintaining reasonable training time. Evaluation is also extended to include resource utilization metrics such as memory, CPU usage, and training time. Our results show the feasibility of integrating machine learning-based forensics at the transactional layer, supported by a foundation in blockchain’s core mechanisms, enabling proactive threat mitigation and transparent blockchain intelligence.
Papers List
List of archived papers
DPRNN-FORMER: AN EFFICIENT WAY TO DEAL WITH BLIND SOURCE SEPARATION
Ramin Ghorbani - Sajad Haghzad Klidbary
VVC-AAR: Adaptive Attention-Aware Resolution and Residual Coding for Perceptually Optimized Ultra-Low Bitrate VVC Compression
Yaghoub Saberi - Somayeh Arab Najafabadi - Mohammadreza Hemmati
An Analysis of Botnet Detection Using Graph Neural Network
Faezeh Alizadeh - Mohammad Khansari
A Formalism for Specifying Capability-based Task Allocation in MAS
Samaneh HoseinDoost - Bahman Zamani - Afsaneh Fatemi
Zone-Based Federated Learning in Indoor Positioning
Omid Tasbaz - Vahideh Moghtadaiee - Bahar Farahani
A Chaotic Crow Search Algorithm for Overlapping Clustering
Mostafa Sabzekar - Seyed Vahid Mousavainejad
Intracranial Hemorrhage Classification using CBAM Attention Module and Convolutional Neural Networks
Parnian Rahimi - Marjan Naderan - Amir Jamshidnezhad - Shahram Rafie
Camouflage Object Segmentation with Attention-Guided Pix2Pix and Boundary Awareness
Erfan Akbarnezhad Sany - Fatemeh Naserizadeh - Parsa Sinichi - Seyyed Abed Hosseini
Ensemble-Based Fraud Detection: A Robust Approach Evaluated on IEEE-CIS
Fatemeh Moradi - Mehran Tarif - Mohammadhossein Homaei
Attentional Bi-LSTM for Multivariate Time Series Forecasting on Edge Devices: A Case Study on NanoPi Neo Plus2
Navid Hajizadeh - Saeed Yazdani - Sara Ershadi-Nasab
more
Samin Hamayesh - Version 44.8.0