, HITCON Pacific 2016 - The Fifth Domain: Cyber | Homeland Security

Course Description

In the computer security, no matter good or bad program both of them will use some mechanism to protect themselves. That's why lot's of program will use encryption algorithm to pack binary. However, the analysts usually got the binary file only. How can we reverse the decode and encryption algorithm from the binary file?

Course Outline

Introduce basic knowledge of decode and encryption algorithm
Common tools and skills
APT malware analysis

Prerequisite skills for the course

IDA / Ollydbg
VC / Python

What students should bring

Laptop

Speaker Brief Introduction

Many years experience in malware analysis and work in security industry