ADVANCED Malware Analysis | Reverse Engineering | Decompiling Disassembling & Debugging (PART 1)

Поділитися
Вставка
  • Опубліковано 30 вер 2024
  • Are you new to cyber security and want to see if it's the right job for you? Try out the Google Cybersecurity Certificate: imp.i384100.ne...
    Patreon if you wanna click stuff:
    / madhatistaken
    Welcome to Mad Hat. I'm a Cyber Security Analyst at an undisclosed Fortune 500 company. Here, we talk about tips and tricks on how to land a successful career in tech. If you are interested, make sure to hit that subscribe button!
    Cybersecurity Certification Study Resources
    CISSP Study Guide - amzn.to/3LmjOLM
    CISSP Practice Tests - amzn.to/3oreDRO
    Security+ Study Guide - amzn.to/3mTGPwg
    A+ Study Guide - amzn.to/3KWS27n
    Check Out My Setup
    Gaming Chair - amzn.to/3V0nAhg
    Monitors - amzn.to/3L1DVgT
    Mouse - amzn.to/3H6A5Su
    Keyboard - amzn.to/3mNXLVa
    Microphone - amzn.to/40BQPId
    Camera - amzn.to/41BqwmX
    Disclaimer: Some links are affiliate links.
    #malwareanalysis #cybersecurity #education

КОМЕНТАРІ • 43

  • @jocelyni1977
    @jocelyni1977 11 місяців тому +14

    Apparently, I'm having imposter syndrome .

  • @TraceursMonkey
    @TraceursMonkey 11 місяців тому +5

    One of my favorite topic when it comes to cyber sec. Thanks for all the info and keep up the good work! Can't wait for part 2 :D

  • @ClownBass
    @ClownBass 11 місяців тому +5

    I was just thinking this would be badass to watch someone do this lets gooooooo

  • @Kartelbranded
    @Kartelbranded 11 місяців тому +4

    The only thing I understood was that I have a lot more to learn and also that this is gold tier content and I must level up and come back when I can understand the verbiage and processes being discussed.

    • @shawnmendrek3544
      @shawnmendrek3544 9 місяців тому

      It is truly confusing. At first. But it gets easier. I was taught C# from a cheat seller for video games, though not good considering he made his cheats in C++, trust me, it is not as confusing as it looks. It is imposing in sight, but in rules, it is not. It takes time.

  • @BlackMango666
    @BlackMango666 11 місяців тому +1

    I know it is going to be a nice vid. By the way, im gonna hack you, bro

  • @Qu0kk4.
    @Qu0kk4. 11 місяців тому +3

    Thanks for uploading more advanced content!

  • @YohannBurrowes
    @YohannBurrowes 11 місяців тому +3

    12:08 bro jacked 💪🏾

  • @pr0tagnist
    @pr0tagnist 11 місяців тому +2

    I got it right!!!!🎉

  • @bollamebendrikb1923
    @bollamebendrikb1923 11 місяців тому +1

    Boy is cookin up some sauce for us with these vids

  • @ruslanbedoev9264
    @ruslanbedoev9264 7 місяців тому

    Oh man I cant have enough of your videos!!!! absolutely the best. I wish Life had a FUN mod like with Your videos@@!!
    Connecting it Russia would be HYPE as hell hahahhaha

  • @timecop1983Two
    @timecop1983Two 7 місяців тому

    C2 framework good joke hehe

  • @shawnmendrek3544
    @shawnmendrek3544 9 місяців тому

    I only knew DISASM via ASM for disassembling games to create things like nospread/noecoil and ect but more so bypassing anti-cheat systems. This is more interesting, honestly. inb4 the comedic genius of Mad Hat. Anyone in the comment section who used ASM or reverse engineering knows the video looks familiar around 3:46
    @mad hat
    what is the best cyber security aspect that reduces the need for coding? I am not a coder, do not want to be, so is this avoidable in CS? Thanks.
    I used to use hex editors to check for API calls/hooks like WSOCK32 and keylogging functions before running a file. Can confirm. Packers changed this, but are reversible sometimes.
    To be honest this too much for me, I reside in networking, not all this code stuff. But I love your videos anyways.

  • @xCheddarB0b42x
    @xCheddarB0b42x 11 місяців тому +1

    crawl
    walk
    run
    sprint
    fly
    go to space (you are here)

    • @duskb1t
      @duskb1t 11 місяців тому

      Nice moustache

    • @xCheddarB0b42x
      @xCheddarB0b42x 11 місяців тому

      @@duskb1t thank you friendo
      Fake name, real 'stache.

  • @NazmulIslam-p5x
    @NazmulIslam-p5x 7 місяців тому

    Awesome video! 8:00 - what is the link to find the commonly used windows API by malwares?

  • @osclet
    @osclet 11 місяців тому +1

    Mad Hat you are so epic!

  • @karankohale4298
    @karankohale4298 9 місяців тому

    I am L1 Security Analyst. Which Course would you recommend me for the future?

  • @uohwhoru3473
    @uohwhoru3473 10 місяців тому

    first thing i did was fire up ida pro and not cheap ASS ghidra💀 still very informative and great video❤

  • @BananaNinja
    @BananaNinja 11 місяців тому

    oh shit mad hat is doin some crazy stuff, idk what is going on but I do know my brain likes it

  • @kickeddroid
    @kickeddroid 11 місяців тому

    Dawg for the love of god enable Dark Mode lmao

  • @franklinmccullough85
    @franklinmccullough85 11 місяців тому

    Great video and stellar outro. I need to go back and watch the basic video again.

  • @timecop1983Two
    @timecop1983Two 7 місяців тому

    Yes I like dragon energy drink!!

  • @ghostballs1874
    @ghostballs1874 11 місяців тому

    Awesome so cool liked and subscribed

  • @montana_3674
    @montana_3674 11 місяців тому

    Will a security clearance benefit me if working in the private sector and not government contracted?

    • @madhatistaken
      @madhatistaken  11 місяців тому +1

      Probably not, since the whole purpose of the security clearance is for compliance purposes - as in who's allowed to work with the data/access.

  • @nordgaren2358
    @nordgaren2358 11 місяців тому

    Did your compiler output a pdb? I recommend deleting or renaming the pdb, in the future, as Ghidra will check the pdb path that is in the PE, and automatically apply it when you analyze.
    Of course, you won't have a pdb when analyzing malware in the wild.

    • @nordgaren2358
      @nordgaren2358 11 місяців тому

      Well, very likely you won't. Accidents probably happen. There are some dumb malware devs.

    • @nordgaren2358
      @nordgaren2358 11 місяців тому

      Oh yea, I think it also checks the folder the exe is in. And maybe some others. So many times I tried to analyize without pdb symbols, and they accidentally showed up. Lol.

  • @Emanuele-fx4uu
    @Emanuele-fx4uu 7 місяців тому

    When pt2 mate can't wait!!

  • @YoanGonzalez-yr2rf
    @YoanGonzalez-yr2rf 10 місяців тому

    Love that little gold chain haha

  • @minhajorno007
    @minhajorno007 11 місяців тому

    Thanks man

  • @fmoney
    @fmoney 11 місяців тому

    Awesomeeeee!!!

  • @jenqq8514
    @jenqq8514 11 місяців тому

    whats your niche boss?

    • @madhatistaken
      @madhatistaken  11 місяців тому +1

      Blue teaming atm, IR and a good bit of threat detection.

  • @gustavorosas-dev
    @gustavorosas-dev 9 місяців тому

  • @shybry3371
    @shybry3371 11 місяців тому

    .0.

  • @pspnerd45
    @pspnerd45 11 місяців тому

    This guy is gonna be big.

  • @romanxxxx
    @romanxxxx 11 місяців тому

    cooler than I thought