|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/malware-analysis-of-documents/
课程评论:没有评论
课程名称:恶意文档的恶意软件分析 课程概述:你知道仅仅打开一个PDF或微软办公文件就可能感染计算机吗?如果这个消息让你感到震惊,那么你需要参加这门课程。文档由于其广泛应用,成为恶意软件作者的主要攻击载体之一。每个人都在使用文档来创建报告、备忘录和文章,所有的沟通活动都离不开文档。因此,文档成为感染计算机的热门方式。文档通常是恶意软件攻击的第一阶段,隐藏在其中的脚本会下载第二阶段的有效载荷,包括额外的恶意软件,如勒索软件、远程访问工具等。 在本课程中,你将学习如何检查和分析恶意的PDF和办公文档,寻找恶意特征和入侵指标。该课程为初学者设计,特别适合对这一领域完全陌生的人。我会带领你从零基础成长为熟练的恶意文档分析者,通过大量实际操作的演练,帮助你掌握分析文档的基本知识和技能。 课程将提供所需的工具及其下载来源,结束时你将掌握有关文档恶意软件分析的基础知识,为进一步的学习打下基础。即使你不打算将恶意软件分析作为职业,这些知识和技能也能帮助你检查文档的安全性,保护自己免受攻击。 我们将使用Remnux和Windows虚拟机进行学习。Remnux是一个基于Debian的Linux发行版,包含所有必须的恶意软件分析工具。虽然有一些Linux背景会很有帮助,但并不是绝对必要的。课程还将教授如何在Windows虚拟机上安装文档调试器,并引导你如何使用Remnux和Windows中的基础工具。理论部分将有所覆盖,但保持在最低限度,重点强调实践和实验。 赶快报名参加课程,让我们在里面见!
Did you know that you could infect your computer just by opening a pdf or microsoft office document? If that came as a shocker for you then you need to take this course. Documents are one of the main vector of attacks for malware authors because of their widespread use. Everyone uses documents to create reports, memos and articles. In fact everything we do for communication involves the use of documents. That is why this is a very popular way to infect computers. Documents are used as the first stage of a malware attack. Embedded in documents are scripts that will download a second stage payload consisting of additional malware, eg ransomware, remote access tools and more. In this course, you will learn how to check and analyze malicious pdf and office documents for signs of malicious artifacts and indicators of compromise. This is a beginners course and targeted to those who are absolutely new to this field. I will take you from zero to proficient level in analyzing malicious documents. You will learn using plenty of practical walk-throughs. We will learn the basic knowledge and skills in analyzing documents. All the needed tools and where to download them will be provided. By the end of this course, you will have the fundamentals of malware analysis of documents under your belt to further your studies in this field. Even if you do not intend to take up malware analysis as a career, still the knowledge and skills gained would enable you to check documents for dangers and protect yourself from these attacks.We will use remnux and windows virtual machine. Remnux is a Debian-based linux distribution that contains all the necessary tools for malware analysis. Some background on linux would be helpful but not strictly necessary. We will also install document debuggers in a windows virtual machine. Then, I will show you how to get started with the very basic tools in remnux and windows. All the essential theory will be covered but kept to the minimum. The emphasis is on practicals and lab exercises.Go ahead and enroll now and I will see you inside.