
Malware Magic: Intel Leads Without Reverse Engineering
Source: YouTube · SANS Digital Forensics and Incident Response · published Apr 2, 2026 · 35:28
This video presents a low-barrier approach to malware analysis, arguing that deep reverse engineering skills are not strictly necessary to extract valuable insights using specialized tools and strategic prioritization 0:01.
Key Takeaways:
• The speaker challenges the assumption that disassemblers and low-level system knowledge are prerequisites for effective malware analysis 0:10.
• Analysis should prioritize skills that leverage automated tools to pull insights without manual code disassembly 0:47.
• The discussion covers specific resources and methodologies designed to identify malicious behavior directly 0:52.
• Practical case studies are used to demonstrate how these non-RE techniques reveal critical threat intelligence 0:58.
By focusing on accessible tools and specific analytical skills, security professionals can derive meaningful insights from malware samples more efficiently than through traditional reverse engineering alone.
Sources:
- 0:01 Introduction to the topic: gaining malware insights without reverse engineering.
- 0:10 Assertion that no disassembler is required for initial analysis.
- 0:47 Discussion on prioritizing skills for effective tool usage.
- 0:52 Overview of specific tools and resources for malware insight extraction.
- 0:58 Mention of malware case studies to illustrate the methodology.
Generate CPE Credits
Generate a professional CPE document from this video's transcript.
Estimated credit: 0.5 CPE hours
Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.
Topic: Malware Analysis. Commonly maps to: Security Operations, Security Architecture and Engineering. Exact CISSP domains are assigned during generation.
Free account. One generation at a time, with a daily limit.
CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.
Transcript Preview
First 800 characters of the transcript
So yeah, we're going to talk about some uh magic or maybe not some magic tricks to uh getting insights out of malware without reverse engineering. No disassembler required. So I am uh Christina Johns. Like many in cybersecurity, my path has been winding. I've done a lot of things that aren't malware. Um I enjoy low-level systemy things, but I strongly feel that you shouldn't have to in order to uh get valuable information from out of malware. So we're uh going This is what we're going to talk about today. It's pretty straightforward. Uh we're going to discuss why reverse engineering is not a requirement uh up front. Uh skills that you might want to prioritize to get the most out of the tools we're going to discuss, uh specific tools and resources to pull these insights out of malware. And …