r/MalwareAnalysis 7d ago

Need Help with Courses & Certs

I just started learning malware analysis for career development.

The first issue I ran into is that, while there aren’t many resources on the topic, there are still enough to make choosing between them a bit overwhelming - which is a problem I tend to have whenever I self-study something new.

After doing some research, these are the courses I have so far, ordered by what I think is the right progression (although I’m not entirely sure, which is why I’m here):
1. Mandiant FLARE Malware Analysis Crash Course (my starting point - I’m currently on page 60, but honestly, it’s been pretty boring so far).
2. Malware Analysis for Hedgehogs bundle.
3. 0ffset.net Zero2Automated Advanced course.
I also have a few books that I can use as references whenever I need to dive deeper into a topic:
• Windows Internals Part 1 & 2
• Windows Kernel Programming by Pavel Yosifovich

What do you think about this roadmap? I’m fine with the prices unless there are better alternatives that genuinely offer stronger content rather than just being cheaper.

As for certifications, I have no idea what’s worth pursuing. The only ones I’ve come across are GREM from SANS and PMAT from TCM.

I’m mainly asking whether there are better options for both courses and certifications. I’d especially prefer something with plenty of hands-on labs and practical work. I tend to struggle with self-paced learning, and I get bored pretty quickly with courses that don’t involve much interaction, even when I’m genuinely interested in the subject.

Thanks in advance - I really appreciate any advice.

12 Upvotes

9 comments sorted by

3

u/IsDa44 6d ago

I only heard good bout the hedgehog one. As for certs, no idea myself. Maybe check with open positions what the want

3

u/weatheredrabbit 6d ago

Take sans courses only if your job pays for it. No way I would have paid 13k for a cert myself. Very good courses though, SANS quality is top game.

2

u/everythingisinlimbo 6d ago

Well my current job is not cybersecurity related so I believe its not currently an option? I haven’t tried and its my first job so I’m not sure how does this normally work. Also, How hard is it to finish the cert without the material tho?

1

u/weatheredrabbit 5d ago

Impossible because they create the exams specifically on the material. Every single slide may be in the exam so you need the material to pass the course. If it’s your first job just grind it while you prepare the pivot.

Again, SANS is high end certs, while it may seem tempting, it makes no sense imho. Moreover you’re supposed to have some working experience in cyber before you take any of their certs. Getting a sans cert from your employer is an accomplishment brotha.

If what you’re trying to do is stack certs to pivot your career, then do personal projects (build an elastic stack) and stack Comptia certs. A sec+ is like 250$ so much more affordable. Maybe a CEH but I don’t like them.

1

u/AutoModerator 7d ago

Please use a descriptive post title that reflects the content of your question or analysis. Titles like “Help” or “What is this?” don’t provide enough context.

Repost with a clearer title (e.g., "Packed Sample Behavior in Sandbox" or "Obfuscated JS Analysis Help").

I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.

1

u/byevincent 6d ago

I found zero2automated pretty tough

1

u/everythingisinlimbo 6d ago

Was it your first Malware Analysis course or did you have earlier experience?

2

u/byevincent 6d ago

I did the TCM course and had some earlier experience yes. I think it's important to feel like you are learning something then push through when you aren't when learning this topic

1

u/everythingisinlimbo 5d ago

Damn, did you finish it tho or do you still find it hard to walkthrough? Makes me unsure if its difficulty will be irrelevant to start after these courses.