Skip to content

joyhutch/malware-course-public

 
 

Repository files navigation

Spring 2024

Introduction to Malware, Threat Hunting and Offensive Capabilities Development

This is the public repository for Introduction to Malware, Threat Hunting and Offensive Capabilities Development It has been taught at Boston University as CS-501, and at Northeastern University as CS-4973/6983

Brief

The class introduces students to the wild world of offensive capabilities development and cyber threat hunting by taking on the role of both attacker and defender to better understand various stages of cyber attacks. Focusing on the Windows operating system, students will analyze malware deployed by a simulated threat actor APT-Ch0nkyBear in addition to creating their own tools to emulate their capabilities.

Capstone

After spending a fair amount of time tearing apart implants, students will work to create a simple implant complete with basic functionality and a multi user C2 server.

Getting Started

  • All notes, assignment READMEs and extra content is contained in the ObsidianVault directory. To open this, please download obsidian.md.
  • Navigate to ObsidianVault/MalwareCourse/MalwareLab/Sandbox.md and follow the directions there for setting up the course sandbox.

Course Authors:

Winnona Kai

Repo structure

Contact Me

Questions, comments? Feel free to reach out on Discord

@k111b222s333e444c555
Remove the numbers :-)

Bribe Me

Like the courrse and want to express your gratitude? In lieu of payment, show your appreciation by

    1. hiring one of my many wonderful students
    1. send a student to a security conference
    1. give a talk
    1. buy us pizza :-)

Acknowledgements

Special thanks to Ari, Leo, and Wayne for making this course possible!

Dedicated to Mike Murray. Without you, I wouldn't be where I am today. 

Previous Versions of the course:

See branches

Fall 2021 version of this course

archived: https://github.com/kbsec/CS-501-2021

About

NEU SP2024 Introductions to Windows Malware

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages

  • C 65.1%
  • JavaScript 19.5%
  • HTML 12.9%
  • CSS 2.1%
  • Shell 0.2%
  • PowerShell 0.1%
  • Other 0.1%