,
In the computer security, no matter good or bad program both of them will use some mechanism to protect themselves. That's why lot's of program will use encryption algorithm to pack binary. However, the analysts usually got the binary file only. How can we reverse the decode and encryption algorithm from the binary file?
Introduce basic knowledge of decode and encryption algorithm
Common tools and skills
APT malware analysis
IDA / Ollydbg
VC / Python
Laptop
Many years experience in malware analysis and work in security industry