SOC Analyst Skills - 4 "Must Have" Tools for Triaging and Analyzing Malware

แชร์
ฝัง
  • เผยแพร่เมื่อ 1 ก.ค. 2024
  • In this video I provide 4 go-to quick triage tools for any security operations center SOC analyst. I show you how to use them, tell you when best to use them, and walk through the pros/cons. These tools provide you a very safe, and fast method to analyze documents and URLs to ascertain their intent. These tools will be go to like a trusty koozie in the summer time.
    Josh Stroscheins Malware collection: github.com/jstrosch/malware-s...
    Malware Bazaar: bazaar.abuse.ch/
    Oledump: blog.didierstevens.com/progra...
    Any.Run: any.run/
    VirusTotal: www.virustotal.com/gui/
    Pdf-Parser: pdfparser.org/
    Analyzing Malicious Documents Cheat Sheet: zeltser.com/media/docs/analyz...
    URLHaus: urlhaus.abuse.ch/
    📱 Social Media
    LinkedIn: / geraldauger
    Twitter: / gerald_auger
    TH-cam: / geraldauger
    Discord: / discord
    Twitch: / gerald_auger_simplycyber
    🔥 My Curated Website of Free Cyber Resources
    SimplyCyber.io
    📷 🎙 💡 MY STUDIO SETUP
    📷 Camera / Video
    Sony Alpha a6400 amzn.to/2TZliEb
    Sigma 30mm F1.4 amzn.to/3hEJFA2
    Gonine AC-PW20 AC Adapter (for a6400) amzn.to/3wDZBqc
    Fotga 52mm Slim Fader amzn.to/3khne5w
    Boom Scissor Arm Stand amzn.to/3efSv5b
    Logitech C922 Pro Stream Webcam 1080P amzn.to/3i8AI0B
    BlueAVS HDMI to USB Video Capture Card 1080P amzn.to/3i5JAEk
    Anker USB C to HDMI Adapter amzn.to/3kjjoJ4
    60-Inch Lightweight Tripod amzn.to/36B5j1u
    5X 6.5ft Portable Green Screen Chromakey Collapsible amzn.to/3efW9Mp
    Glide Gear TMP100 Adjustable Teleprompter amzn.to/3B36DrZ
    🎙 Audio
    Blue Yeti Nano Premium USB Mic amzn.to/3efWcb3
    BOYA BY-M1 3.5mm Electret Condenser Microphone amzn.to/3AZzJIN
    Boom Scissor Arm Stand amzn.to/3efSv5b
    Neewer Professional Microphone Pop Filter Shield amzn.to/3ekdZOi
    💡 Lighting
    UBeesize 10’’ LED Ring Light amzn.to/3i23qAm
    Neewer Ring Light Kit:18"/48cm Outer 55W 5500K Dimmable LED Ring Light amzn.to/2U0slwo
    Fovitec 2-Light High-Power Fluorescent Studio Lighting Kit amzn.to/36zDS8A
    Neewer 2-Pack Dimmable 5600K USB LED amzn.to/3B0crCQ
    Neewer 480 RGB Led Light amzn.to/2Vzwmbf
    60-Inch Lightweight Tripod amzn.to/36B5j1u
    🧑🏻‍💻 Workstation
    2020 Apple Mac Mini with Apple M1 Chip amzn.to/3wybMVL
    Logitech MX Master 3 Advanced Wireless Mouse amzn.to/3xFCkWp
    Apple Magic Keyboard amzn.to/3ehMRiP
    Huanuo Dual Monitor Stand Mount amzn.to/3keFZqc
    Dell U2717D IPS 27" UltraSharp InfinityEdge Slim Widescreen amzn.to/36znqoG
    USB C to SD Card Reader amzn.to/2VG1RRd
    StarTech 2 Port USB C KVM Switchamzn.to/3efWoa7
    Toshiba Canvio Basics 1TB Portable External Hard Drive USB 3.0 amzn.to/3hZOK4A
    External Hard Drive Portable Carrying Case amzn.to/3r62XRM
    Mountable Surge Protector Power Strip with USB 5 Outlets 3 USB Ports amzn.to/3wDmlqv
    🥼 Raspberry Pi Lab
    Raspberry SC15184 Pi 4 Model B 2019 Quad Core 64 Bit WiFi Bluetooth (2GB) amzn.to/3i61EhI
    Miuzei Case for Raspberry Pi amzn.to/2Vzyrnz
    Micro Center 32GB Class 10 Micro SDHC Flash Memory Card with Adapter amzn.to/3B0Qm6X
    Micro HDMI to HDMI Cable 6FT amzn.to/3ekpiG3
    👉 Some product links are affiliate links which means if you buy something SimplyCyber receives a small commission (but it all costs the same to you, so consider it supporting the channel 😉 )
    🙌🏼 Donate
    Like the channel and got value? Please consider supporting the channel
    www.buymeacoffee.com/SimplyCyber
    😎 Merch 😎
    👉🏼 SimplyCyber Branded Gear: teespring.com/stores/simplycyber
    🎥 Livestreams are produced through StreamYard.
    $10 credit using my referral link below if you ever upgrade to pro plan.
    streamyard.com?pal=6534222448689152
    Disclaimer: All content reflects the thoughts and opinions of Gerald Auger and the speakers themselves, and are not affiliated with the employer of those individuals unless explicitly stated.
  • วิทยาศาสตร์และเทคโนโลยี

ความคิดเห็น • 69

  • @eugenealejandro8627
    @eugenealejandro8627 3 ปีที่แล้ว +22

    Hats off to people like Gerald who create contents like this for life-long learners.

  • @ColbyCheeser
    @ColbyCheeser 2 ปีที่แล้ว +3

    Thanks a lot man. Learning a lot and currently looking for a entry level role. You have helped a lot

  • @Murugakishore
    @Murugakishore 2 ปีที่แล้ว +1

    thanks for educating us one more step in soc.

    • @SimplyCyber
      @SimplyCyber  2 ปีที่แล้ว

      def want to catch the livestream today withJohn Strand 3/17 at 4:30PM EST on this channel. SOC Core Skills is the topic.

  • @MrJingy08
    @MrJingy08 4 ปีที่แล้ว +3

    any.run....added to my arsenal, thank you!

    • @SimplyCyber
      @SimplyCyber  4 ปีที่แล้ว

      Its solid to get so much dynamic info quick. Plus I love it for just understanding better how diff malware behaves. I've also used some short videos to show end users what ransomware looks like in reality. Most end users think its like the movies with crazy effects and stuff, and its not. Thanks for watching Allen.

  • @gmontenegro9711
    @gmontenegro9711 5 หลายเดือนก่อน

    Thank you for this content!

  • @barzanahmed7194
    @barzanahmed7194 3 ปีที่แล้ว

    Thank you, sir. Please keep going!

  • @vak21
    @vak21 3 ปีที่แล้ว +2

    thanks for such a valuable content. Really appreciate it :)

  • @cyriljohns
    @cyriljohns 3 ปีที่แล้ว

    Gerald you help many many people!

    • @SimplyCyber
      @SimplyCyber  3 ปีที่แล้ว

      I try. Thank you 😊

  • @KiranKdarknightrises
    @KiranKdarknightrises 3 ปีที่แล้ว

    Really cool resources.. thanks for your effort in making this video! 👍

    • @SimplyCyber
      @SimplyCyber  3 ปีที่แล้ว

      Thanks Kiran! You check them out yet? Which was most interesting?

    • @KiranKdarknightrises
      @KiranKdarknightrises 3 ปีที่แล้ว

      @@SimplyCyber Ofcourse the any.run!

  • @Lucas-md8gg
    @Lucas-md8gg 3 ปีที่แล้ว +2

    I'm reading Learning Malware Analysis book and the video was good, thanks.

    • @SimplyCyber
      @SimplyCyber  3 ปีที่แล้ว +1

      Great book! Seminal text on malware analysis skills

  • @CIPHERFLEX
    @CIPHERFLEX 2 ปีที่แล้ว

    This video is a goldmine Gerald

  • @jacksonai1231
    @jacksonai1231 3 ปีที่แล้ว

    Great video! Thank you!

  • @buvovo8736
    @buvovo8736 4 ปีที่แล้ว +1

    wonderful content,thank you

    • @SimplyCyber
      @SimplyCyber  4 ปีที่แล้ว +1

      Thank you Anxhela. I appreciate you taking the time to leave a comment and let me know your thoughts. Have a great day.

  • @brooksthornhill6897
    @brooksthornhill6897 2 ปีที่แล้ว

    Wonderful content!

  • @huntercarter2073
    @huntercarter2073 3 ปีที่แล้ว +2

    Hello Gerald! I have been watching many of your videos today. I am in the last stage of the hiring process for an excellent cybersec company that I truly want to work for. It is an entry level soc position but I am doing whatever it takes to prepare for those difficult security scenario interview questions. Your channel rocks!

    • @SimplyCyber
      @SimplyCyber  3 ปีที่แล้ว +1

      Just seeing this now. I hope it worked out and you got the job! Best wishes.

    • @huntercarter2073
      @huntercarter2073 3 ปีที่แล้ว +6

      @@SimplyCyber I got the job! Thanks!

    • @SimplyCyber
      @SimplyCyber  3 ปีที่แล้ว +1

      @@huntercarter2073 YES!!!

  • @mayavik1034
    @mayavik1034 3 ปีที่แล้ว

    Awesome...just pure awesome...

    • @SimplyCyber
      @SimplyCyber  3 ปีที่แล้ว

      Thank you so much 😀

  • @yourjoyousbluet8
    @yourjoyousbluet8 4 ปีที่แล้ว +1

    YOU'RE AMAZING!!!

    • @SimplyCyber
      @SimplyCyber  4 ปีที่แล้ว

      Thank you Joyous. It's my pleasure. Your kind words made my day.

  • @HelloWorld-gj8by
    @HelloWorld-gj8by 2 ปีที่แล้ว +1

    Hi Gerald, could you please make video about real-time scenarios as soc analyst which we may face most of the interview questions in the interview process. This will help most of the job seekers.

  • @AravindKumar-nb9vu
    @AravindKumar-nb9vu 3 ปีที่แล้ว

    Great done by you thank you

  • @edwardjaycocks5497
    @edwardjaycocks5497 3 ปีที่แล้ว

    Very good content that’s why I subscribed even though I’m a professional blue teamer.

    • @SimplyCyber
      @SimplyCyber  3 ปีที่แล้ว

      Thanks Edward. Appreciate the support.

  • @chicagofan4eva23
    @chicagofan4eva23 3 ปีที่แล้ว +1

    timestamps would be super helpful! Great Video!

    • @SimplyCyber
      @SimplyCyber  3 ปีที่แล้ว

      I've started adding them to my videos. Thanks for pointing out this one missing; ill go back and add to this one. Appreciate you dropping a comment and watching the content.

  • @nightdevil22666
    @nightdevil22666 3 ปีที่แล้ว

    Thanks man

  • @arzoo_singh
    @arzoo_singh 3 ปีที่แล้ว

    Amazing tool .

    • @SimplyCyber
      @SimplyCyber  3 ปีที่แล้ว +1

      Thanks Arzoo! Tools are critical to being able to do analyst work.

  • @arzoo_singh
    @arzoo_singh 3 ปีที่แล้ว +1

    You can also use Remnux and please follow the SOP of securing BIOS and system even if you are using Remnux

    • @SimplyCyber
      @SimplyCyber  3 ปีที่แล้ว +1

      Thank you. Need to do a video on Remnux

  • @yusuframdane2221
    @yusuframdane2221 ปีที่แล้ว

    Perfect ⭐⭐⭐

  • @SuperChelseaSW6
    @SuperChelseaSW6 3 ปีที่แล้ว

    Nice vids sir.How does thehive project and cortex works when we dealing with incident response?

    • @SimplyCyber
      @SimplyCyber  3 ปีที่แล้ว

      The Hive is a ticketing system so you can coordinate with multiple people and have documentation. Not sure on cortex.

  • @anantP-ip8op
    @anantP-ip8op 11 หลายเดือนก่อน

    Hey there! 3 years down the line; how do you see future of malware analysis now? There are limited jobs and what's your take on automation in malware analysis domain? Pls assist

  • @nagarajgokarnkar6622
    @nagarajgokarnkar6622 3 ปีที่แล้ว +2

    Bro please make a complete videos series /course on soc

    • @SimplyCyber
      @SimplyCyber  3 ปีที่แล้ว

      I have a few videos on SOC and about to release one on an amazing Network Defense Range SOC 2-day course I took recently. Stay tuned.

    • @nagarajgokarnkar6622
      @nagarajgokarnkar6622 3 ปีที่แล้ว

      @@SimplyCyber thanks sir eagerly waiting
      Please try to do real time threat hunting as well

  • @BenjiBibiza
    @BenjiBibiza ปีที่แล้ว

    Great ccontent but would be better in 1080p (720p60 is video max) to be able to read the text on his screen when demonstrating websites or text.

    • @SimplyCyber
      @SimplyCyber  ปีที่แล้ว

      My newer content is better on production

  • @johnvardy9559
    @johnvardy9559 ปีที่แล้ว

    Hi Gerard, Yara is important?

  • @Agroth2333
    @Agroth2333 2 ปีที่แล้ว

    Do these tips still stand in 2022?

  • @edwardjaycocks5497
    @edwardjaycocks5497 3 ปีที่แล้ว

    Are you using the free version or the paid version….Quite a big difference between the two.

  • @someonefromthisworld5199
    @someonefromthisworld5199 2 ปีที่แล้ว

    Timestamps pleaseeee

  • @edwardjaycocks5497
    @edwardjaycocks5497 3 ปีที่แล้ว

    Oh ya…..I see that the professional version sorry didn’t see the whole video.

    • @SimplyCyber
      @SimplyCyber  3 ปีที่แล้ว

      All good Edward. Thanks for all the great comments across the videos. You the man!