Explore UCD

UCD Home >

COMP41750

Academic Year 2024/2025

Advanced Malware Analysis & Threat Intelligence (COMP41750)

Subject:
Computer Science
College:
Science
School:
Computer Science
Level:
4 (Masters)
Credits:
10
Module Coordinator:
Assoc Professor Nhien An Le Khac
Trimester:
Spring
Mode of Delivery:
Online
Internship Module:
No
How will I be graded?
Letter grades

Curricular information is subject to change.

This course follows on from the 'Malware Analysis' module to teach students the skills required for more in depth investigations utilising threat intelligence and more advanced malware analysis. Students need to understand the current threat landscape, including prevalent types of attacks, how victims are compromised, the rudiments of exploit development, lateral movement in a network and be aware of the motivations of attackers. They need to be able to perform investigations utilising not just malware analysis, but also email data, DNS data among others, and finally be able to present this investigation in a cohesive format

About this Module

Learning Outcomes:

On successful completion of this module the learner will be able to:
1. Perform and document investigations into malicious threat actors using a variety of data sources.
2. Work with reverse engineers on malware analysis and identify the most valuable artefacts for retrieval.
3. Understand the current threat landscape and accurately assess the severity and ramifications of a given compromise.

Indicative Module Content:

Threat Landscape:
Common exploit techniques, email compromise, phishing, browser-based exploits, service exploitation. Lateral movement in a network, maintaining persistence in a network, e-crime, cyber espionage, cyber war.

Reverse Engineering & Debugging:
Microsoft Windows PE File format, x86 assembly language, Disassembly and debugging with IDA, Packer analysis, Malware anti-debugging techniques, Windows API.

Exploit Usage:
Weaponisation of documents, analysis of documents.

Student Effort Hours:
Student Effort Type Hours
Lectures

20

Autonomous Student Learning

180

Online Learning

20

Total

220


Approaches to Teaching and Learning:
active/task-based learning;
lectures;
reflective learning;
case-based learning;

Requirements, Exclusions and Recommendations

Not applicable to this module.


Module Requisites and Incompatibles
Not applicable to this module.
 

Assessment Strategy
Description Timing Component Scale Must Pass Component % of Final Grade In Module Component Repeat Offered
Assignment(Including Essay): Individual Assignments Week 4, Week 8 Graded No
30
No
Exam (In-person): 2-hour final exam at the end of the trimester. End of trimester
Duration:
2 hr(s)
Graded No
70
No

Carry forward of passed components
No
 

Resit In Terminal Exam
Summer Yes - 2 Hour
Please see Student Jargon Buster for more information about remediation types and timing. 

Feedback Strategy/Strategies

• Feedback individually to students, post-assessment

How will my Feedback be Delivered?

Not yet recorded.