back to top

Ransomware Analysis Basics

Let’s be honest… If the criminals do everything perfectly, getting your data back after a ransomware attack is nearly impossible without their key, and getting the key means paying the ransom. Is it impossible? No. But it IS highly unlikely. So, why did we bother creating Ransomware Analysis Basics? We believe:

  1. Attackers are human, too. They make mistakes! If there is any way to get the data back without paying the ransom, great! We’ll do that by turning the tables on the bad actors and exploiting the flaws in THEIR implementation.
  2. Along the way, we’ll learn the foundational knowledge needed if you’re considering a career in digital forensics such as encryption, binary exploitation, reverse engineering and much more.

Join us for a fun yet all too real scenario and learn a lot about forensics along the way. Who knows… you might just save your org millions! 🤑

Price = $50

This is a “Name Your Price” course. Your options include:

  • Minimum Price = $25
  • Suggested Price = $50
  • Pay more to support our community efforts

What do I get?

Students get their own web-based virtual environment to get hands-on experience with the tools and techniques taught in the course with a copy of FLARE-VM that has tools already installed. It is also configured to disable any detection mechanism on the system, so it will not interfere with the user (analyst). You will also be provided with numerous samples of ransomware to rip apart in the protected virtual lab.

Ransomware Analysis Basics covers the following topics:

0️⃣ Ransomware Basics
1️⃣ Encryption Algorithms
2️⃣ Windows Crypto APIs and How to Analyze Them
3️⃣ Windows Internet APIs
4️⃣ Ransomware Helper APIs
5️⃣Can We Decrypt Ransomware?!
6️⃣ 5 Hands-On Labs
7️⃣ Wrap Up

Prerequisites for Ransomware Analysis Basics

No prior knowledge is assumed although basic Linux and familiarity with virtual machines (VMs) are recommended.


Dark Web 2 is Here!

Bring your hoodie & hacker mindset to DW2 - CTI Researcher (20% Off)
Get 25% Off DW 1 & 2 (Bundle)


WMD 6 Not Quite Ready

Our delay is your benefit. Deals still live!
WMD 1 = $40, WMD Intro Path (1-3) = 46% Off


Recent Releases

- WMD 5, SIEMless Threat Hunting
- 2 New Bundles 50% Off 7 CTFs, 75% Off 7 HALs
- Blogs: Brief History of ConDef EcosystemConDef MCP – Meet Your AI Teaching Asst, Blue Team Training Roadmap
- Free UCs: Home Lab, Nmap, PowerShell


Top Picks

The Mishaal Bundle, ConDef 2026, API Hacking, Phishing


Courses In Production

WMD 6, WebApp Pentest, Network Pentest, Deception, OS Hardening, Hardware Hacking 101...