Introduction to Malware Detection
Malware Analysis Courses
ID: CADMUS-MARE-01 Owner: CTI
Available for training April 2027
Duration 12 hours
Platform Category Sisyfos
Proficiency Level Basic
Training TypeUpskilling Reskilling
Delivery Method Online self-paced
   
ECSF Roles View Roles ▾
Cyber Threat Intelligence Specialist Digital Forensics Investigator Cybersecurity Researcher
ECSF Skills View Skills ▾
Use and apply CTI platforms and tools Conduct technical analysis and reporting Explain and present digital evidence in a simple, straightforward and easy to understand way Identify threat actors TTPs and campaigns
Description View Description ▾
Introduction to malware detection: An introduction to malware analysis and detection focusing on the basics of static and dynamic analysis. The students will learn the malware analysis methodology and workflow an perform automated malware analysis, detection and fingerprinting. The students will also have the opportunity to employ Sisyfos, a unique platform for malware analysis and learning.
Registration
Please register before 26 April 2026
Malware analysis, detection and threat intelligence
Malware Analysis Courses
ID: CADMUS-MARE-02 Owner: CTI
Available for training May 2026
Duration 24 hours
Platform Category Sisyfos
Proficiency Level Intermediate
Training Type Upskilling Reskilling
Delivery Method Online self‑paced Online instructor‑led support
ECSF Roles View Roles ▾
Cyber Threat Intelligence Specialist Digital Forensics Investigator Cyber Incident Responder
ECSF Skills View Skills ▾
  • Use and apply CTI platforms and tools
  • Identify threat actors TTPs and campaigns
  • Conduct technical analysis and reporting
  • Explain and present digital evidence in a simple, straightforward and easy to understand way
Description View Description ▾
Malware analysis, detection and threat intelligence

An intermediate level course diving deep into malware analysis, using both static and dynamic analysis techniques. The course combines automated malware analysis using the Sisyfos platform with manual analysis of software samples. Additionally, the most popular malware detection mechanisms are presented with a focus on YARA rules and custom rule generation. Finally, students will learn how to extract threat intelligence from malware samples and share it employing MISP.
Reverse Engineering
Malware Analysis Courses
ID: CADMUS-MARE-03 Owner: CTI
Available for training May 2026
Duration 20 hours
Platform Category Sisyfos
Proficiency Level Advanced
Training Type Upskilling Reskilling
Delivery MethodOnline self‑paced (optional) Online instructor‑led support

ECSF Roles View Roles ▾
Cybersecurity Researcher Digital Forensics Investigator Penetration Tester
ECSF Skills View Skills ▾
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Review codes assess their security
  • Conduct technical analysis and reporting
  • Identify and exploit vulnerabilities
  • Develop codes, scripts and programmes
Description View Description ▾
Reverse Engineering

An advanced course focusing on reverse engineering of software and malware samples. The course introduces reverse engineering employing the Ghidra reverse engineering suite and provides the students with a hands-on experience. Additionally, advanced techniques such as packing, encryption and antiRE will be explored along with automated reverse engineering with Sisyfos and AI. The students will also have the opportunity to reverse engineer real-world malware samples.
OT/ ICS Security
Malware Analysis Courses
ID: CADMUS-MARE-04 Owner: CTI
Available for training December 2026
Duration 20 hours
Platform Category LMS, ICS/SCADA, Simulation Environment
Proficiency Level Advanced
Training Type Upskilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Cyber Incident Responder Cyber Threat Intelligence Specialist Digital Forensics Investigator Chief Information Security Officer (CISO) Cybersecurity Educator Cybersecurity Implementer Cybersecurity Researcher Penetration Tester
ECSF Skills View Skills ▾
  • Identify threat actors TTPs and campaigns
  • Conduct technical analysis and reporting
  • Develop and communicate, detailed and reasoned investigation reports
  • Manage and analyse log files
  • Identify and solve cybersecurity-related issues
  • Conduct ethical hacking
Description View Description ▾
OT/ ICS Security

A highly specialized training designed to develop capabilities in identifying, dissecting, analyzing, and understanding malware targeting OT/ICS, SCADA and IIoT systems. Using a controlled lab sandbox integrated with industrial digital-twin simulations, participants study advanced threat actor tactics, protocol abuse, firmware exploitation and binary reversing specific to safety-critical industrial environments.

The course balances theoretical threat intelligence with deep hands-on reversing and forensics of real-world ICS malware samples.
Reverse Engineering / Malware Analysis
Malware Analysis Courses
ID: CADMUS-MARE-05 Owner: NCSA
Available for training December 2026
Duration 30 hours
Platform Category Cyber Range
Proficiency Level Advanced
Training Type Upskilling
Delivery Method Online self-paced
ECSF Roles View Roles ▾
Cybersecurity Researcher Cyber Threat Intelligence Specialist Digital Forensics Investigator
ECSF Skills View Skills ▾
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Conduct technical analysis and reporting
  • Use and apply CTI platforms and tools
  • Identify threat actors TTPs and campaigns
Description View Description ▾
Reverse Engineering / Malware Analysis

Malware is a growing threat to organizations. This course provides hands-on training in analyzing malware by reverse engineering. Students will learn to examine malware in a controlled environment using both static (disassembly) and dynamic (sandbox execution) techniques. Key tools include IDA Pro and Ghidra for disassembly, PEStudio for file inspection, Process Monitor for runtime behavior, and Cuckoo Sandbox (an open-source automated malware analysis system) for capturing execution logs. Participants will collect IOCs (network indicators, file hashes, registry changes) and write YARA detection rules.
HW Hacking
Malware Analysis Courses
ID: CADMUS-MARE-06 Owner: CTI
Available for training March 2027
Duration 20 hours
Platform Category LMS + Malware / Reverse Engineering Track + Hardware Exploitation Labs
Proficiency Level Intermediate
Training Type Upskilling Cross-skilling
Delivery Method Hybrid & Physical
ECSF Roles View Roles ▾
Chief Information Security Officer (CISO) Cyber Incident Responder Cyber Legal, Policy & Compliance Officer Cyber Threat Intelligence Specialist Cybersecurity Auditor Cybersecurity Educator Cybersecurity Implementer Cybersecurity Researcher Digital Forensics Investigator Penetration Tester
ECSF Skills View Skills ▾
  • Identify and exploit vulnerabilities
  • Conduct technical analysis and reporting
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Develop code, scripts and programmes
  • Review codes assess their security
  • Use penetration testing tools effectively
  • Collect information while preserving its integrity
  • Identify, analyse and correlate cybersecurity events
  • Identify threat actors TTPs and campaigns
  • Model threats, actors and TTPs
  • Think creatively and outside the box
  • Work ethically and independently; not influenced and biased by internal or external actors
Description View Description ▾
HW Hacking

A high-intensity professional cybersecurity training track combining theoretical foundations with real-world hands-on labs in malware analysis, reverse engineering, exploit development and hardware hacking. The program includes sandbox-based labs, advanced RE workshops and physical hardware exercises.
MARE: Introduction to Purple Team Operations
Malware Analysis Courses
ID: CADMUS-MARE-07 Owner: CTI
Available for training October 26
Duration 30 hours
Platform Category LMS Sisyfos
Proficiency Level Intermediate
Training Type Upskilling
Delivery Method Online self paced
ECSF Roles View Roles ▾
Cybersecurity Researcher Cyber Threat Intelligence Specialist Digital Forensics Investigator
ECSF Skills View Skills ▾
  • Decompose and analyse systems to identify weaknesses and ineffective controls
  • Conduct technical analysis and reporting
  • Collect, analyse and correlate cyber threat information originating from multiple sources
  • Use and apply CTI platforms and tools
  • Identify threat actors TTPs and campaigns
Description View Description ▾
MARE: Introduction to Purple Team Operations

Malware is a growing threat to organizations. This course provides hands-on training in analyzing malware by reverse engineering. Students will learn to examine malware in a controlled environment using both static (disassembly) and dynamic (sandbox execution) techniques. Key tools include IDA Pro and Ghidra for disassembly, PEStudio for file inspection, Process Monitor for runtime behavior, and Cuckoo Sandbox (an open-source automated malware analysis system) for capturing execution logs. Participants will collect IOCs (network indicators, file hashes, registry changes) and write YARA detection rules.