Malware Analysis & Digital Investigations
This course will take you step-by-step, with lots of hands-on practice, enabling you to learn malware analysis in a quick and simple training.
Amr is a former malware researcher at Symantec and currently a vulnerability researcher at Tenable. He is the author of Mastering Malware Analysis published by Packt Publishing. He had worked on the analysis of multiple nation state-sponsored attacks including the NSA malware families (Stuxnet & Regin), North Korea (Contopee), and many other highly advanced attacks.
Amr has spoken at top security conferences all around the world, including DEFCON and VB Conference. He was also featured in Christian Science Monitor for his work on Stuxnet.
Malware Analysis & Digital Investigations Training is a hands-on training covering targeted attacks, Fileless malware, ransomware attacks with their techniques, strategies, and the best practices to respond to them.
You'll experience hands-on training with labs on performing malware analysis, memory forensics, and full attack investigations with different real-world samples. Course objectives are:
This training is for security professionals who want to expand their skills or beginners and newcomers to the malware incident response wanting to learn Malware Analysis, Reverse Engineering, and Memory Forensics. It's a great resource for
Watch First
Mastering Malware Analysis Book
Resources
Download The Virtual Machine
Installing VM in VirtualBox
Installing VM in VMWare
Copying Malware Samples To VM
Executing Commands inside the VM
01 - Intro
02 - History
03 - APT Attacks
04 - Malware Types
05 - Analyzing Malicious Documents
06 - Scenario 01 - FIN7 Spear-phishing Attack
Workbook & Labs
Quiz #1
01 - Incident Discovery And Log Analysis P1
02 - Incident Response And Log Analysis P2
03 - Splunk
04 - Packet Analysis
05 - Packet Analysis Demo
Workbook & Labs
Quiz #2
01 - Malware Analysis Process
02 - How To Approach a Sample
03 - Basic Static Analysis
04 - Behavioral Analysis
05 - Pony Malware - Tool Intro
06 - Pony Malware - Basic Static Analysis
07 - Pony Malware - Behavioral Analysis
Workbook & Labs
Quiz #3
C++ Intro 01 - Get Started with your first program
C++ Intro 02 - Memory And Variables
C++ Intro 03 - Conditional Commands
C++ Intro 04 - Loops
C++ Intro 05 - Functions
C++ Intro 06 - Communicate with the world
01 - x86 Assembly And Memory
02 - x86 Assembly Instructions
03 - x86 Assembly To C
04 - x86 Assembly Local Variables
05 - Static Analysis Level 00
06 - Static Analysis Level 01
07 - Static Analysis Level 02
08 - Static Analysis Level 03
09 - Intro to Dynamic Analysis
10 - Dynamic Analysis Level 03
11 - Dynamic Analysis Level 04
12 - Example From a Real Malware
12 - Example From a Real Malware
Workbook & Labs
Basic windows administrations (Linux as well is preferred) and a good understanding of windows protocols.
Yes, it will be full of hands-on practice.
Those who seek to learn and advance their malware analysis skills. Be it incident handler, soc analysts, threat researchers, or malware analysts.
The course requires a basic understanding of cybersecurity terminologies. Even if you haven’t written a single line of code before, don’t worry, this program is still for you.
Sure, the instructor will be easily reachable during the course. In addition, as a student, you will get a free 30 minutes session with the instructor if you need some sort of guidance or mentorship.
Definitely. The course discusses some of the recent malwares such as Emotet, Wannacry, and NotPetya.