||Course logistics and Cryptography [crypto.ppt]||Stallings Chapters 2, 3 and 9, KPS Chapters 2, 3 and 5||Project part 1 due on Oct. 1.
|Oct. 3||Cryto [cont'ed]
User authentication and authorization
(case study: Single Sign On (SSO) system and Kerberos) [authentication.ppt]
|KPS Chapters 9 and 10,
Password Security: A Case History, Communications of ACM, vol.22 no.11, 1979.
paper summary and Homework 1 due on Oct. 8.
We will do a lab for nmap next week. Before that, you need to download nmap to you computer by following the instructions.
(case study: nmap and nessus (installation
Taxonomy of Computer Worms, N. Weaver, et al, the
First ACM Workshop on Rapid Malcode (WORM), 2003.
2, due on Oct 15. Project problem statement
presentation slides due on Oct 13.
|Oct. 17 morning||Malcode (cont'd)
Invited talk on "Cyber Crime Past, Present and Future!" by Jibran Ilyas, Director at Stroz Friedberg. (bio)
Chronicles: A Journey to Infamy, Trend Micro white
Stallings Chapter 19 (Malware)
A Survey of Botnet Technology and Defenses, in the Proc. of the 2009 Cybersecurity Applications & Technology Conference for Homeland Security.
Detecting SYN Flooding Attacks, H. Wang, D. Zhang, and K. G. Shin, in Proc. of IEEE INFOCOM, 2002
Web Based Attacks, Symantec white paper, Feb. 2009. (Podcast from Symantec).
|Symantec Web security paper summary and Homework 3 due by Oct 29.|
|Oct. 17 afternoon
||Project problem statement
presentation and feedback from each group.
DoS Attacks [DoS.ppt]
|Oct. 31||WWW Security and Defense [web.ppt].
Demo tutorial and SSH set up instructions if you would like to try the demo yourself.
Analysis of Web-Based Applications, Chapter in
``Test and Analysis of Web Services", Springer, September
KPS Chapter 25 (Web security)
4 due on Nov. 5
||Class cancel due to
the sickness of the instructor
||Firewalls [firewalls.ppt]||Handout from Chapter 9 of Firewalls and Internet
Security: Repelling the Wily Hacker.
Stallings Chapter 20 and KPS Chapter 23 (firewalls)
|Homework 5 due on Nov. 19.|
|Nov. 21||Intrusion Detection/Prevention Systems (case study: snort IDS) [IDS.ppt][snort.ppt]||Stallings Chapter 18 (IDS).||Optional: Project final
solution slides due on Nov 30 (Mon).
Homework 6 due on Dec. 3.
||Final project solution
presentations (see the list below).
Review for the final.
Symantec Internet Security Threat Report
|Wireless and Network Security Integration Solution Overview, Cisco Inc. Here are more detailed guidelines on the solutions (i.e., expanding the overview).||Wireless security paper
summary due Dec. 10.
Wireless network security and techonology integration for compliance (case study: Cisco) [wirelessSec_cisco.pptx].