Malware analysis: Collaboration, automation and training
Posted on 27.03.2013
Whether you're a novice or a professional at analyzing malicious code, you'll have a desire to learn or pass on that skill.

Most malicious code analysis is performed by a single analyst, some times with collaboration tools for sharing comments on code between two or more analysts.

In this video from Shmoocon 2013, Richard Harman teaches you how to set up a virtualized analysis environment that is suitable for solo analysis, training a classroom of students, passing an analysis VM between analysts, and a self-service analysis “session” playback of previous analysis sessions. All of this while not getting in your way, and making efficient use of RAM and disk space.



Richard Harman is an incident responder at SRA International's internal Security Operations Center, where he slings Perl code supporting incident response and performs analysis & reverse engineering of targeted attack malware samples.

If you're interested in the field of malware analysis, read our article on becoming a malware analyst with commentary from McAfee, Avast, Bitdefender, Kaspersky Lab, FortiGuard and Symantec.





Spotlight

The big picture of protecting and securing Big Data

Today almost every company is dealing with big data in one way or another – including customer data, tracking data, and behavioral marketing information – connecting every aspect of our lives. While this is a cutting edge use of technology, data monitoring can become dangerous when placed in the wrong hands.


Weekly newsletter

Reading our newsletter every Monday will keep you up-to-date with security news.
  



Daily digest

Receive a daily digest of the latest security news.
  
DON'T
MISS

Fri, Aug 28th
    COPYRIGHT 1998-2015 BY HELP NET SECURITY.   // READ OUR PRIVACY POLICY // ABOUT US // ADVERTISE //