SEC536: Adversarial AI - Penetration Testing AI Systems

Important! Bring your own system configured according to these instructions.
To participate in FOR610, you must bring a properly configured system that meets all requirements. Back up your system before class or use a machine without critical data. SANS is not responsible for your system or data.
Mandatory System Hardware Requirements
Mandatory Host Configuration and Software Requirements
Course Media and Setup Instructions
If you have additional questions, please contact customer service.
FOR610: Reverse-Engineering Malware: Malware Analysis Tools and Techniques is designed for cybersecurity professionals seeking to develop or enhance their malware analysis skills.
The malware analysis process taught in FOR610 helps incident responders and other security professionals assess the severity and repercussions of a situation that involves malicious software so that they can plan recovery steps. Forensics investigators also learn about the key characteristics of malware discovered during the examination, including how to establish Indicators of Compromise and obtain other threat intelligence details for analyzing, scoping, and containing the incident.
What threat does the malicious or suspicious program pose? What do its mechanics reveal about the adversary's goals and capabilities? How effective are the company's security controls against such infections? What security measures can strengthen the organization's infrastructure from future attacks of this nature? This course teaches the skills necessary to answer these and other questions critical to an organization's ability to handle malware threats and related incidents.
This course is ideal for:
The GIAC Reverse Engineering Malware (GREM) certification is designed for technologists who protect the organization from malicious code. GREM-certified technologists possess the knowledge and skills to reverse-engineer malicious software (malware) that targets common platforms, such as Microsoft Windows and web browsers. These individuals know how to examine inner-workings of malware in the context of forensic investigations, incident response, and Windows system administration. Become more valuable to your employer and/or customers by highlighting your cutting-edge malware analysis skills through the GREM certification.
To ensure a successful learning experience in the FOR610: Reverse-Engineering Malware course, attendees should meet the following prerequisites:
FOR610: Reverse-Engineering Malware is a core component of the Threat Intelligence and Forensics Learning Path. This training complements the skills taught in FOR578: Cyber Threat Intelligence and FOR710: Reverse-Engineering Malware: Advanced Code Analysis, offering a well-rounded foundation in malware analysis and threat investigation.
Other complementary areas of training include endpoint-focused forensics, network-focused forensics, and media exploitation, enabling practitioners to broaden their expertise in digital forensics and incident response.
Reverse engineering malware involves analyzing malicious software to uncover its behavior, structure, and purpose.
Why it matters:
This process is essential for understanding evolving threats and bolstering cybersecurity defenses, aligning with SANS’s mission to provide actionable education in this critical field.
The FOR610 course delivers practical and marketable skills to propel your cybersecurity career forward.

Get feedback from the world’s best cybersecurity experts and instructors

Choose how you want to learn - online, on demand, or at our live in-person training events

Get access to our range of industry-leading courses and resources