Course overview
The aim of this course is to equip students with a comprehensive understanding of malware, its various forms, and the methodologies employed in its analysis and reverse engineering. Through a blend of theoretical knowledge and practical exercises, students will gain the skills necessary to identify, analyse, and mitigate malware threats. The course will cover a range of topics, including the history and evolution of malware, static and dynamic analysis techniques, reverse engineering of malicious code, and advanced topics such as rootkits, ransomware, and evasion tactics. By the end of the course, students will be proficient in using state-of-the-art tools and techniques to dissect malware and understand its behaviour, preparing them for careers in cybersecurity and related fields.
- Basic Reverse Engineering
- Static Analysis of Malware
- Dynamic Analysis of Malware
Course learning outcomes
- Describe malicious software operating principles and types, relating them to industry frameworks where applicable.
- Apply a range of static and dynamic analysis tools to help identify and classify malicious software.
- Explain malicious software components, including distribution, malware packers, persistence mechanisms, lateral movement, stealth techniques and rootkits.
- Examine the legal, ethical, and societal implications of malicious software.
- Analyse provided and known malicious software using reverse engineering techniques.
- Apply malicious software detection techniques, including static and dynamic analysis methods to create detection signatures and rules.