Threat Tradecraft
Infrastructure Hunting &
Malware Analysis
This three-day, hands-on course teaches defenders how to hunt, pivot, and track adversary infrastructure across phishing, malware, and post-exploitation operations, and how to correlate that infrastructure with malware analysis to build high-confidence detections and intelligence.
Students will learn repeatable workflows to move from single indicators to campaign- and actor-level understanding while maintaining strong operational security. The course also introduces practical ways to use AI-assisted techniques to accelerate analysis and reporting without replacing analyst judgment or compromising sensitive data.