HITBLab: Crimeware Reverse Engineering

TBA

$400.00

Duration

1 days

Delivery Method

virtual

Level

intermediate

Seats Available

20

Duration

1 days

Delivery Method

virtual

Level

intermediate

DELIVERY: VIRTUAL LIVE STREAM 

DATE: 17 July 2021

TIME: 12:00 to 16:00 CEST/GMT+2

 


 

This lab provides all you need to know for analyzing sophisticated malware used in modern real attacks against financial organizations. It will include understanding how malicious code used by top threats like Lazarus and other APT style financial groups is reversed. 
The lab will also touch on methods, malware, payload delivery vectors, shellcodes, anti-analysis and anti detection capabilities used in modern financial attacks.

Why You Should Take This Course

The main idea of this lab is to teach various malware analysis tips and tricks while reverse engineering interesting samples that have been encountered by Sergey during real research in the field. The course is primarily static reverse engineering with IDA Pro and writing automatic tools that help to decrypt and extract payloads or IOCs. It’s suitable for those who want to learn proper ways of static malware analysis and to move into the advanced malware analysis field without depending on others.

Who Should Attend

This training is designed for Reverse Engineers, Security Analysts and Operators, as well as Threat Intelligence analysts who want to have a better understanding on how modern attacks against financial organizations look like.

Key Learning Objectives

  • Intro to reversing approach and analyzing modern financial attacks.

  • Understanding static and dynamic analysis of financial APT samples and artefacts.

  • Understanding automatic deobfuscation tools.

  • Analysis of malicious documents: shellcode and payload extraction.
  • Prerequisite Knowledge

    Prior reverse engineering knowledge is required – this training is not aimed for beginners. • Core programming concepts. • Knowledge of Windows OS architecture and APIs. • Basic knowledge of Assembler language is a must.

    Hardware / Software Requirements

    • IDA Pro (highly recommended)
    • IDA Free(but PRO is recommended)
    • VirtualBox
            Training Partner

    Your Instructor

    No data was found