Release notes for SimSpace Platform version 6.37
New individual training content
New structured content plans
- Copy Fail: Emerging Threat. Learn about CVE-2026-31431 (“Copy Fail”), a local Linux kernel privilege escalation discovered by AI-assisted scanning. Analyze the AF_ALG/splice() vulnerability mechanism, execute the exploit, and implement auditd and Falco detection rules to validate coverage. Includes lab work.
- IoT Device Analysis: Firmware Analysis Challenge. Extract the root filesystem from firmware on an IoT device.
- Static Malware Analysis: Malicious PDF Files Challenge. Analyze embedded code in a malicious Portable Document Format (PDF) file to identify Indicators of Compromise (IOC). Includes lab work.
Completed maintenance
- ICS Foundations: Introduction. An introduction to industrial control systems (ICS), including the principles of ICS security and their similarities and differences. Also includes the general types of operational controls found in industrial control systems and a discussion of the concepts of vulnerability and risk management in an ICS context.
Learning path and circuit updates
The following learning paths have been updated with new content:
- Forensics: Files (Work Role: Forensic Analyst). Use digital forensics tools to investigate the metadata of several popular office document types. Metadata analysis can be used to isolate malware samples and preserve artifacts for an investigation by digital forensics professionals.
- Malware Analysis: Advanced Exercises (Work Role: Malware Analyst). Try your hand at an advanced series of malware challenges using static and dynamic analysis tools to fight obfuscation and complex malware signatures.
- Malware Analysis: Extract IOCs (Work Role: Malware Analyst). This circuit covers how Host Analysts identify and extract indicators of compromise (IOCs) from malware for a given investigative scenario.
- Malware Analysis: IoT (Work Role: Malware Analyst). Investigate malware using both dynamic and static analysis techniques.
- Red: Big Name Public Exploits (Work Role: Offensive Security). A Red Team Operator or Pentester is a cybersecurity professional who emulates a potential adversary’s offensive cyberspace operations and exploitation techniques against a targeted mission, system, network, component, or capability. The team is responsible for developing and executing the adversary’s tactics, techniques, and procedures.
- Threat Hunting: Applied Concepts (Work Role: Threat Hunter). Put your threat hunting skills to the test in a series of exercises and challenges that rely on solid fundamentals.
Attack scenario fixes
- APT41 v1.0.9 attack scenario update: Users might have had an issue where initial access failed in certain newer range builds due to payload directory formatting errors. The attack platform has been updated to process directory structures correctly, ensuring successful initial access.
