YoVDO

Hunting Linux Malware for Fun and Flags

Offered By: RSA Conference via YouTube

Tags

RSA Conference Courses Reverse Engineering Courses Process Analysis Courses Threat Detection Courses Memory Dump Analysis Courses

Course Description

Overview

Explore server-side Linux malware threats and learn effective analysis techniques in this 46-minute RSA Conference talk by ESET Senior Malware Researcher Marc-Etienne M.Léveillé. Gain insights into creating a safe environment for studying Linux malware, understanding common artifacts, and investigating file metadata. Discover methods for examining basic filesystem structures, verifying package integrity, and analyzing logs using auditd. Learn to analyze live processes, utilize procfs exe magic links, and perform process memory dumps. Delve into kernel memory analysis, network configuration examination, and network capture techniques. Master two approaches: reversing script-based malware and reverse engineering compiled malware. Acquire practical skills to enhance your Linux security expertise and better protect your infrastructure against evolving threats.

Syllabus

Intro
About this presentation
Why malware on Linux servers?
Why care?
Why understand them?
Artifacts
Common file metadata
Basic filesystem
Package integrity
Logs
Using auditd
Offline filesystem
Analyzing a live process
procfs exe magic link
Process stalling
Process memory dump
Kernel memory
Network configuration
Network capture
Two approaches
Reversing script-based malware
Reverse engineering compiled malware
This week you should
Within three months you should
Next you should


Taught by

RSA Conference

Related Courses

Dal Reverse engineering alla stampa 3D
University of Naples Federico II via Federica
Rapid Manufacturing
Indian Institute of Technology Kanpur via Swayam
Generative Design for Industrial Applications
Autodesk via Coursera
Fundamentos de Ciberseguridad: un enfoque práctico
Inter-American Development Bank via edX
Functional And Conceptual Design
Indian Institute of Technology Madras via Swayam