
 Fall 2015
      
| Date | Topics/slides | Readings | Assignment | 
|---|---|---|---|
| Sep. 26 | Course logistics and Cryptography [crypto.ppt] | Stallings Chapters 2, 3 and 9, KPS Chapters 2, 3 and 5 | Project part 1 due on Oct. 1. | 
| Oct. 3 | Cryto [cont'ed] User authentication and authorization (case study: Single Sign On (SSO) system and Kerberos) [authentication.ppt] | KPS Chapters 9 and 10, Password Security: A Case History, Communications of ACM, vol.22 no.11, 1979. | Botnet
            paper summary and Homework 1 due on Oct. 8. We will do a lab for nmap next week. Before that, you need to download nmap to you computer by following the instructions. | 
| Oct. 10 | Network/Vulnerability scanner
            (case study: nmap and nessus (installation
              demo)). Malcode [malcode.ppt] | A
              Taxonomy of Computer Worms, N. Weaver, et al, the
            First ACM Workshop on Rapid Malcode (WORM), 2003. | Homework
              2, due on Oct 15. Project problem statement
            presentation slides due on Oct 13. | 
| Oct. 17 morning | Malcode (cont'd) Invited talk on "Cyber Crime Past, Present and Future!" by Jibran Ilyas, Director at Stroz Friedberg. (bio) | Botnet
              Chronicles: A Journey to Infamy, Trend Micro white
            paper 2010. Stallings Chapter 19 (Malware) A Survey of Botnet Technology and Defenses, in the Proc. of the 2009 Cybersecurity Applications & Technology Conference for Homeland Security. Detecting SYN Flooding Attacks, H. Wang, D. Zhang, and K. G. Shin, in Proc. of IEEE INFOCOM, 2002 Web Based Attacks, Symantec white paper, Feb. 2009. (Podcast from Symantec). | Symantec Web security paper summary and Homework 3 due by Oct 29. | 
| Oct. 17 afternoon | Project problem statement
            presentation and feedback from each group. Botnets [botnet.ppt] DoS Attacks [DoS.ppt] | ||
| Oct. 31 | WWW Security and Defense [web.ppt]. Demo tutorial and SSH set up instructions if you would like to try the demo yourself. | Vulnerability
              Analysis of Web-Based Applications,  Chapter in
            ``Test and Analysis of Web Services", Springer, September
            2007. [reference
              slides]. KPS Chapter 25 (Web security) | Homework
              4 due on Nov. 5 | 
| Nov. 7 | Class cancel due to
            the sickness of the instructor | ||
| Nov. 14 | Firewalls [firewalls.ppt] | Handout from Chapter 9 of Firewalls and Internet
              Security: Repelling the Wily Hacker. Stallings Chapter 20 and KPS Chapter 23 (firewalls) | Homework 5 due on Nov. 19. | 
| Nov. 21 | Intrusion Detection/Prevention Systems (case study: snort IDS) [IDS.ppt][snort.ppt] | Stallings Chapter 18 (IDS). | Optional: Project final
            solution slides due on Nov 30 (Mon). Homework 6 due on Dec. 3. | 
| Dec. 5 | Final project solution
            presentations (see the list below). Review for the final. Symantec Internet Security Threat Report | Wireless and Network Security Integration Solution Overview, Cisco Inc. Here are more detailed guidelines on the solutions (i.e., expanding the overview). | Wireless security paper
            summary due Dec. 10. | 
| Dec. 12 | Final Exam. Wireless network security and techonology integration for compliance (case study: Cisco) [wirelessSec_cisco.pptx]. |  | |