Home / Services / Security Research & Malware Analysis
Reverse engineering and R&D
Security Research & Malware Analysis
Malware recovered in an engagement goes to our internal R&D department for reverse engineering and analysis.
What it is
A research function that takes the artefacts recovered during testing and incident response — binaries, scripts, implants, command-and-control traffic — and establishes exactly what they do.
How it runs
Static and dynamic analysis in an isolated environment: unpacking, capability identification, persistence and evasion techniques, infrastructure and indicator extraction.
What you get
A technical report on capability and intent, indicators you can hunt with, and detection logic derived from how the sample actually behaves rather than from a signature feed.
Everything runs under written authorisation. Scope, targets, stop conditions and the rules of engagement are agreed and signed before any testing begins. Read the authorization policy.
| Engagement | Typical duration |
|---|---|
| Focused assessment | 1–2 weeks |
| Full-scope engagement | 3–6 weeks |
| Continuous testing | Ongoing, quarterly cycles |
| Retest after remediation | 1 week |
Related
What usually runs alongside this.
Discuss a security research & malware analysis engagement.
Tell us the objective and the constraints — timeline, regulatory context, systems that must not be touched. We will come back with a scope and a written authorisation pack.