CIRCL Training and Technical Courses

Introduction to Malware Reverse Engineering

Identifying whether unknown software is malicious or benign is a critical task. In this course, each participant sets up a malware laboratory and learns proven introductory reverse-engineering strategies.

Learning goals

  • Understand common malware-analysis techniques.
  • Create a custom laboratory environment.
  • Collect indicators that help determine whether a file is malicious or benign.
  • Develop strategies to collect indicators of compromise (IOCs).
  • Build a solid foundation for further study.

The course does not teach x86 assembly language or cover deep reverse engineering.

Audience and prerequisites

This course is intended for security engineers, administrators, and managers. Participants should have Linux or UNIX experience, good knowledge of Windows internals, familiarity with control flow in programming languages, and an understanding of TCP/IP, DNS, proxies, and firewalls. Basic familiarity with x86 assembly is useful but not required.

Practical information

  • Duration: 16 or 24 hours
  • Languages: English or German
Top