BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//pretalx//pretalx.com//hack-lu-2025//talk//DZHMRR
BEGIN:VTIMEZONE
TZID:Europe/Luxembourg
BEGIN:DAYLIGHT
DTSTART:20241022T000000
TZNAME:CEST
TZOFFSETFROM:+0200
TZOFFSETTO:+0200
END:DAYLIGHT
BEGIN:STANDARD
DTSTART:20241027T030000
RDATE:20251026T030000
TZNAME:CET
TZOFFSETFROM:+0200
TZOFFSETTO:+0100
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:20250330T030000
RDATE:20260329T030000
TZNAME:CEST
TZOFFSETFROM:+0100
TZOFFSETTO:+0200
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
SUMMARY:Reverse Engineering Ransomware: Hands-On Malware Analysis & IOCs E
 xtraction - Ankshita Maunthrooa\, Ankshika Maunthrooa
DTSTART;TZID=Europe/Luxembourg:20251022T101500
DTEND;TZID=Europe/Luxembourg:20251022T114500
DTSTAMP:20260816T132531Z
UID:pretalx-hack-lu-2025-DZHMRR@pretalx.com
DESCRIPTION:Ransomware remains one of the most prevalent and destructive f
 orms of malware today. Understanding its inner workings is crucial for def
 enders and incident responders alike. This workshop will offer a deep dive
  into reverse engineering ransomware\, focusing on practical methods for u
 npacking and analyzing malicious code.\n\nThe Reverse Engineering Ransomwa
 re: A Hands-on Workshop is designed to provide attendees with practical ex
 perience in analyzing a simulated ransomware sample. The workshop will beg
 in with an introduction to ransomware and an overview of tools such as Ghi
 dra\, OllyDbg\, x64dbg\, Process Monitor\, and Wireshark. Attendees will t
 hen engage in static analysis using Ghidra to examine the ransomware binar
 y\, followed by dynamic analysis in a safe virtual machine environment\, w
 here they will observe the malware’s behavior using debugging tools and 
 monitoring software. The session will also cover extracting Indicators of 
 Compromise (IOCs) and documenting the findings in a report. \n\nThroughout
  the workshop\, attendees will be guided step-by-step\, with time for ques
 tions\, hands-on practice\, and discussion. The workshop concludes with a 
 Q&A session and provides additional resources and a whitepaper for continu
 ed learning.\n\nNote: A simulated ransomware sample will be provided at th
 e start of the workshop. Attendees are encouraged to bring a laptop with a
 t least 16GB of RAM and a pre-configured VM environment to fully participa
 te in the hands-on analysis.
LOCATION:Schengen 1 & 2
URL:https://pretalx.com/hack-lu-2025/talk/DZHMRR/
END:VEVENT
END:VCALENDAR
