Module Descriptors
MALWARE ANALYSIS AND REVERSE ENGINEERING
COCS70642
Key Facts
Faculty of Computing, Engineering and Sciences
Level 7
15 credits
Contact
Leader: Hatem Tammam
Hours of Study
Scheduled Learning and Teaching Activities: 24
Independent Study Hours: 126
Total Learning Hours: 150
Assessment
  • ASSIGNMENT weighted at 100%
Module Details
Module Learning Strategies
The material will be presented through a combination of lectures, tutorials, practical exercises and directed self-study as a substitution for some tutorials.
Teaching will take place over 9 weeks and will be in the form of 1 lecture and 1 x 2 hour tutorial sessions for 5 weeks, week 6 ¿ week 8 1 hour lecture and 1 hour tutorial and week 9 1 hour lecture and 2 hours tutorial.
Module Additional Assessment Details
An assignment of 3000 words weighted at 100% (Learning Outcomes 1,2,3 and 4)
Assignment will typically require a critical review/analysis of a specific malicious code. The student will be required to perform either static or dynamic analysis of malicious code
Module Indicative Content
This module examines operational viruses and malicious code that are designed to attack and compromise computer systems, and the methods used to exploit a weakness in installed software that could lead to the system being fully controlled. It examines ways in which software construction and testing can be made more secure against such attacks and how computer systems can be organised to prevent and reduce the risk from such attacks. This module will focus on the identification and the analysis malicious code.
Module Texts
FILE SYSTEM FORENSIC ANALYSIS, Carrier B, 2005, Pearson Education, ISBN: 0-321-26817-2
MALWARE ANALYST¿S COOKBOOK AND DVD, Ligh M, Adair S, Hartstein B, Richar M, 2011, ISBN: 978-0-470-61303-0
Malware Forensics: Investigating and Analyzing Malicious code, Malin, C, Aquilina, J, 2008, Syngress, ISBN: 159749268X
Module Resources
Access to the Digital Forensic Lab,
Access to virtual machines running a variety of operating systems with malicious code present on them.
Module Special Admissions Requirements
None.