Advanced Malware Analysis & Reverse Engineering – 5 Days

Courses provide the knowledge needed to analyze malicious software, to collect IoCs (Indicators of Compromise), to write signatures for detecting malware on infected machines, and to restore infected/encrypted files and documents

Course Outline

• Unpacking
• Decryption
• Developing own decryptors for common scenarios
• Byte code decompilation
• Code decomposition
• Disassembly
• Reconstruction of modern APT architectures
• Recognizing typical code constructs
• Identification of cryptographic and compression algorithms
• Classification and attribution based on code and data
• Class and structure reconstruction
• APT plugin architectures (based on recent APT samples)

• Be able to analyze a modern APT toolkit, from receiving the initial sample, all the way to producing a technical description of the attacker’s TTPs with IOCs
• Produce static decryptors for real-life scenarios and then continuing with in-depth analysis of the malicious code
• Analyze malicious documents that are typically used to deliver initial payloads and know how to extract them
• Ensure that damage assessment and incident response efforts are accurate and effective





Duration: 5 Days

