<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://wiki.hope.net/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Stesla47</id>
	<title>HOPE Wiki - User contributions [en]</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.hope.net/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Stesla47"/>
	<link rel="alternate" type="text/html" href="https://wiki.hope.net/index.php/Special:Contributions/Stesla47"/>
	<updated>2026-05-23T19:25:27Z</updated>
	<subtitle>User contributions</subtitle>
	<generator>MediaWiki 1.43.3</generator>
	<entry>
		<id>https://wiki.hope.net/index.php?title=Red_vs_Blue_--_Malware_Workshop&amp;diff=10452</id>
		<title>Red vs Blue -- Malware Workshop</title>
		<link rel="alternate" type="text/html" href="https://wiki.hope.net/index.php?title=Red_vs_Blue_--_Malware_Workshop&amp;diff=10452"/>
		<updated>2025-08-14T17:57:07Z</updated>

		<summary type="html">&lt;p&gt;Stesla47: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Red vs. Blue: Malware - Build It, Break It, Block It workshop =&lt;br /&gt;
&lt;br /&gt;
== Abstract ==&lt;br /&gt;
&lt;br /&gt;
A BEGINNER&#039;S workshop to unleash your inner hacker and defender! Dive into the dark art of crafting a Linux user mode infostealer rootkit, then switch gears to learn basic malware analysis and basic reverse engineering of that rootkit. This workshop will go from static analysis with tools like Binary Ninja and DetectItEasy to dynamic analysis decrypting payloads and extracting critical IoCs. It doesn’t stop there - you’ll build detection rules with tools like YARA, ClamAV, OSQuery, Suricata, and OpenEDR to hunt down that rootkit. Cap it off by integrating your defenses into Elasticsearch and Kibana dashboard. Perfect for aspiring red and blue teamers to learn over a dozen different open-source tools. All code will be provided and the focus will be understanding how the malware and detections work and how to use a variety of tools, not deep diving into systems program. &lt;br /&gt;
&lt;br /&gt;
== Day / Time / Location ==&lt;br /&gt;
Day 2, Saturday, 16-August-2025, 7:30pm - 11:30pm&amp;lt;br&amp;gt;&lt;br /&gt;
Tobin 223 (Workshop C)&lt;br /&gt;
&lt;br /&gt;
== Full Description ==&lt;br /&gt;
&lt;br /&gt;
== Registration -- NOT required == &lt;br /&gt;
&lt;br /&gt;
&amp;lt;span style=&amp;quot;color:orange&amp;quot;&amp;gt;&#039;&#039;&#039;NOTE:  You do NOT need to register to take this workshop&amp;lt;br&amp;gt;-- please show up early to ensure a seat at Tobin 223 (Workshop C).&#039;&#039;&#039;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Presenter(s) ==&lt;br /&gt;
&lt;br /&gt;
Scott Cook&lt;br /&gt;
&lt;br /&gt;
== Materials ==&lt;br /&gt;
&lt;br /&gt;
Any materials needed to participate in this workshop will be available at no-cost.&amp;lt;br&amp;gt;&lt;br /&gt;
Observers are welcome at no cost.&amp;lt;br&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;To do the hands-on portion for this workshop:&amp;lt;br&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Materials Cost: None&#039;&#039;&#039;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Required Software / What to bring ==&lt;br /&gt;
&lt;br /&gt;
Basic python and C programming skills. At a basic level, understand when a program is compiled it uses libraries. Comfortable with bash. Should have entry level cyber experience.&lt;br /&gt;
&lt;br /&gt;
== Links ==&lt;br /&gt;
A VM will be available for download soon that contains everything you will need to follow along in the workshop !!! Please Check Back.&lt;/div&gt;</summary>
		<author><name>Stesla47</name></author>
	</entry>
	<entry>
		<id>https://wiki.hope.net/index.php?title=Red_vs_Blue_--_Malware_Workshop&amp;diff=10451</id>
		<title>Red vs Blue -- Malware Workshop</title>
		<link rel="alternate" type="text/html" href="https://wiki.hope.net/index.php?title=Red_vs_Blue_--_Malware_Workshop&amp;diff=10451"/>
		<updated>2025-08-14T17:54:43Z</updated>

		<summary type="html">&lt;p&gt;Stesla47: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Red vs. Blue: Malware - Build It, Break It, Block It workshop =&lt;br /&gt;
&lt;br /&gt;
== Abstract ==&lt;br /&gt;
&lt;br /&gt;
A BEGINNER&#039;S workshop to unleash your inner hacker and defender! Dive into the dark art of crafting a Linux user mode infostealer rootkit, then switch gears to learn basic malware analysis and basic reverse engineering of that rootkit. This workshop will go from static analysis with tools like Binary Ninja and DetectItEasy to dynamic analysis decrypting payloads and extracting critical IoCs. It doesn’t stop there - you’ll build detection rules with tools like YARA, ClamAV, OSQuery, Suricata, and OpenEDR to hunt down that rootkit. Cap it off by integrating your defenses into Elasticsearch and Kibana dashboard. Perfect for aspiring red and blue teamers to learn over a dozen different open-source tools. All code will be provided and the focus will be understanding how the malware and detections work and how to use a variety of tools, not deep diving into systems program. &lt;br /&gt;
&lt;br /&gt;
== Day / Time / Location ==&lt;br /&gt;
Day 2, Saturday, 16-August-2025, 7:30pm - 11:30pm&amp;lt;br&amp;gt;&lt;br /&gt;
Tobin 223 (Workshop C)&lt;br /&gt;
&lt;br /&gt;
== Full Description ==&lt;br /&gt;
&lt;br /&gt;
== Registration -- NOT required == &lt;br /&gt;
&lt;br /&gt;
&amp;lt;span style=&amp;quot;color:orange&amp;quot;&amp;gt;&#039;&#039;&#039;NOTE:  You do NOT need to register to take this workshop&amp;lt;br&amp;gt;-- please show up early to ensure a seat at Tobin 223 (Workshop C).&#039;&#039;&#039;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Presenter(s) ==&lt;br /&gt;
&lt;br /&gt;
Scott Cook&lt;br /&gt;
&lt;br /&gt;
== Materials ==&lt;br /&gt;
&lt;br /&gt;
Any materials needed to participate in this workshop will be available at-cost.&amp;lt;br&amp;gt;&lt;br /&gt;
Observers are welcome at no cost.&amp;lt;br&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;To do the hands-on portion for this workshop:&amp;lt;br&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Materials Cost: None&#039;&#039;&#039;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Required Software / What to bring ==&lt;br /&gt;
&lt;br /&gt;
Basic python and C programming skills. At a basic level, understand when a program is compiled it uses libraries. Comfortable with bash. Should have entry level cyber experience.&lt;br /&gt;
&lt;br /&gt;
== Links ==&lt;br /&gt;
A VM will be available for download soon that contains everything you will need to follow along in the workshop !!! Please Check Back.&lt;/div&gt;</summary>
		<author><name>Stesla47</name></author>
	</entry>
</feed>