#317: MALWARE ANALYSIS // How to get started with John Hammond
David Bombal31 Elo 2021

#317: MALWARE ANALYSIS // How to get started with John Hammond

The amazing John Hammond tells us how to get into Malware Analysis. Learn about jobs, what you need to know and much more! Menu: Pretty sketchy stuff! 0:00 Welcome John Hammond: 0:37 Don't divide cyber in your mind: 0:53 John's day job: 2:00 Hacker's crafty methods: 3:17 Will AI take jobs away? 4:02 How do I become like you? 4:55 Windows is very important: 5:35 Malware vs CTFs: 6:12 Is Malware mainly on Windows systems? 6:32 Always comes back to the same thing: 7:28 Practical Example: 8:50 John's setup: 9:29 Python malware example: 11:42 Malware code: 12:50 Bad guys can sell this information: 15:50 But this is in the clear? 16:30 Obfuscated version: 17:14 Real world? Don't want to touch disk: 18:28 How do I find this stuff: 19:50 Weird Spam SMS messages: 20:58 Real World: Finding malware: 21:30 John's real world company example: 23:42 Real world logic to find malware: 24:20 Detectors: 25:23 Hunting malware: 25:48 Use your eyes - don't trust an automated systems: 26:25 Input from other systems: 27:15 How do I become like you? 27:49 What kind of skills would you look for in a person to get a job: 28:00 Look at malware sites: 29:24 Build out a library: 30:15 David pushes John for a job on LinkedIn: 30:38 How did John get his job? 33:05 Use social media: 33:30 How John got his first job: 34:31 It's who you know, not what you know: 35:55 How John got his current job: 36:30 Would you hire someone with certs; or someone you know: 38:19 Windows bat script example: 39:50 Which languages does John know: 45:08 How do you know if it is good or bad code? 45:38 Office Macros Malware Example: 46:45 Cool Linux command: 50:40 Is this a good job? Are there lots of job? 51:26 What hours do you work? 52:30 Any books you recommend? 53:31 John Hammond Playlist: https://davidbombal.wiki/johnhammond ==================== Web Sites mentioned: ==================== Use at your own risk: vx-underground: https://twitter.com/vxunderground theZoo: https://twitter.com/vxunderground Malware Bazaar: https://bazaar.abuse.ch/ Joe Sandbox: https://www.joesecurity.org/ Any run: https://any.run/ VirusTotal: https://www.virustotal.com/gui/home/u... ====== Books: ====== The IDA Pro Book: https://amzn.to/3DtEATW Black Hat Go: Go Programming For Hackers and Pentesters: https://amzn.to/3gISKa4 Black Hat Python: Python Programming for Hackers and Pentesters: https://amzn.to/3ta50FH Python Pocket Reference https://amzn.to/3mQPME2 Linux Pocket Guide: Essential Commands: https://amzn.to/2UWBwya Regular Expression Pocket Reference: https://amzn.to/3gJoP1f Linux Basics for Hackers: Getting Started with Networking, Scripting, and Security in Kali: https://amzn.to/3Ds22Rq ================ Connect with me: ================ Discord: https://discord.com/invite/usKSyzb Twitter: https://www.twitter.com/davidbombal Instagram: https://www.instagram.com/davidbombal LinkedIn: https://www.linkedin.com/in/davidbombal Facebook: https://www.facebook.com/davidbombal.co TikTok: http://tiktok.com/@davidbombal YouTube: https://www.youtube.com/davidbombal ================ Connect with John: ================ YouTube: https://www.youtube.com/johnhammond010 Twitter: https://twitter.com/_johnhammond LinkedIn: https://www.linkedin.com/in/johnhammo... malware malware analysis cybersecurity cybersecurity jobs hacking ethical hacking hacking jobs john hammond hack the box try hack me htb thm cyber security career cybersecurity cybersecurity careers ceh oscp ine oscp certification ctf for beginners first job cybersecurity job Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(500)

#578: How Cisco Is Using AI to Fix Networks

#578: How Cisco Is Using AI to Fix Networks

Cisco is bringing AI agents into network operations with Cisco Cloud Control, AI Canvas, and Agentic Ops. In this demo, David Bombal is joined by DJ Sampath (SVP and General Manager, AI Software and P...

5 Kesä 22min

#577: My Dream "home lab"

#577: My Dream "home lab"

Join me for an exclusive, behind-the-scenes tour of Cisco's purpose-built $20 million AI data center lab in San Jose. AI is revolutionizing the tech industry, but running massive 10,000 GPU clusters c...

22 Touko 28min

#576: How to track dark ships using OSINT (with demos)

#576: How to track dark ships using OSINT (with demos)

Big thank you to DeleteMe for sponsoring this video. Use my link https://joindeleteme.com/Bombal to receive a 20% discount or use the QR Code in the video. In this OSINT deep dive, professional OSINT...

23 Huhti 49min

#575: AI attackers are winning. Here is the SECRET to survive.

#575: AI attackers are winning. Here is the SECRET to survive.

Are AI attackers winning the cybersecurity war? In this video, I sit down with Daniel Miessler, a 25-year security veteran, to discuss the terrifying reality of AI-driven cyber attacks and the massive...

14 Huhti 1h

#574: Hacking Windows Active Directory in 10 minutes

#574: Hacking Windows Active Directory in 10 minutes

Thank you ThreatLocker for sponsoring my trip to ZTW26 and also for sponsoring this video. To start your free trial with ThreatLocker please use the following link: https://www.threatlocker.com/david...

14 Huhti 25min

#573: WhatsApp Hackers for Hire on the Dark Web (Surprisingly cheap)

#573: WhatsApp Hackers for Hire on the Dark Web (Surprisingly cheap)

Thank you to ThreatLocker for sponsoring my trip to ZTW26 and also for sponsoring this video. To start your free trial with ThreatLocker please use the following link: https://www.threatlocker.com/d...

7 Huhti 27min

#572: How Cisco Protects AI Agents in Modern Data Centers

#572: How Cisco Protects AI Agents in Modern Data Centers

Big thanks to Cisco for sponsoring this video and sponsoring my trip to Cisco Live Amsterdam 2026. Join David as he sits down with Cisco's Dave West (SVP, Global Specialists), to unpack the technical...

31 Maalis 14min

#571: Google Big Sleep: The End of Human Hackers?

#571: Google Big Sleep: The End of Human Hackers?

Big thank you to DeleteMe for sponsoring this video. Use my link http://jointdeleteme.com/Bombal to receive a 20% discount or use the QR code in the video. Welcome back to the channel! In this deep ...

31 Maalis 1h 8min