Reverse Engineering LAB Setup Tutorial (updated)

preview_player
Показать описание
If you are just getting started with reverse engineering this the place to start. In this tutorial we provide an overview the current setup that we currently run, this is also the same setup used in all of our live streams and tutorials.

The full notes for this tutorial are unlocked for everyone on our Patreon including links to all of the tools mentioned

-----
OALABS DISCORD

OALABS PATREON

Twitch

OALABS GITHUB

UNPACME - AUTOMATED MALWARE UNPACKING
-----
Рекомендации по теме
Комментарии
Автор

VMware now allows you to use pro for personal use for free.

ellit
Автор

nice to see that youre still active i just recently discovered your channel and had thought it died lol

nullBit
Автор

Hi, For the dynamic analysis VM, doesn't it also need at least a simulated Internet connection (like to a Remnux VM with inetsim) to learn more about what the malware is actually trying to do in terms of networking? Sorry if this seems like a noob question, I'm still learning.

tradingpabune
Автор

Amateur reverser here - great channel, thanks for all your efforts! Came here to see how my setup compared to that of a professional; was pleasantly surprised to see that I wasn't far off. I must say though, I'm surprised that WinDbg (the modern version, not the 'clunky classic', ) didn't make an appearance in your list of tools for dynamic analysis; are there particular use cases for which x64dbg is better suited or is it just a personal preference?

Don't get me wrong, I love x64dbg; it's far more intuitive to use than WinDbg, I'm just not sure that I could live without the latter's scripting capabilities and Time Travel Debugging. (Although I'm not sure if TTD strictly counts as dynamic analysis... 🤔)

DanHalford
Автор

Interesting tutorial, thank you. I have been surprised that you don't use Procmon as a dynamic analysis tool. To me it's a fantastic tool. Any reason for that?

jc.baptiste
Автор

Well thats strange. I've always heard Ghidra pronounced as "Gee-Druh" with a hard G sound, never "G-Hydra".

Anyways, this is great timing for me as I need to make some progress with reversing soon. Thank you very much.

Cools
Автор

Great setup for reversing windows binaries. What would you recommend for reversing .elf or ARM binaries?

MoxxyPrime
Автор

Don't you need network capture tools for the dynamic analysis (wireshark etc ...) ?

emileberteloot
Автор

Thank you for the great video.. I have one question, how do we install tools in dynamic analysis vm if we cut off access to internet and host.. should we connect the internet, install the apps and then disconnect it again?

sayyedabdulrehman
Автор

Should i tell openly that last night my 010 hex editor subscription ended so i actually kinda reversed the whole thing, removed the activation part and it's free now !

Sky-fk
Автор

Hello, I am new to reverse engineering which playlist I should follow & on patreon will Do it live works for beginners?

waqarahmad
Автор

i have question.

reverse engineering all these static and dynamic analysis tool can be use for MALWARE ANALYSIS. ???

testacctestacc
Автор

What version of Windows are you running or should I use... Where do I download the tools... And how do I subscribe to the course... Thank you, sir.

ahmedfarahat
Автор

ghidra being pronounced as gee-hydra has ruined my day

pappupotty
Автор

Can you please give list of books in your background 😢

openai.
Автор

What hw do you look for in your work pc? I guess >32gb ram and >8 cores maybe

gan
Автор

Sergei The man. Just want to let you know VMware is actually free now. Even the pro version. Also, for the dirty VM, should use a Dirty background. Like dirty chicks. LOL

kritikusi-
Автор

Can u pls also teach android reversing like frida, jadx apktool etc?

VortexFlickens
Автор

i am not too much into RE( i just do whatever i need at given time, mostly with one of coolest hexeditors for linux), but given that youtube somehow recommended me this video, i am feeling eligible to share my opinion. More content, less memes. Dude talks rather calmly, not too loud, i am focusing and out of the sudden MEME TIME with 160% of volume. for fucks sakes, i understand the concept of not being too strict but at least have some respect for those of us who just so happen not run their audiostreams via compressor on a daily basis.

lis
Автор

vmware is totally free for educational purposes.

albinosan