19
CSC 5290 Cyber Security Practice Fengwei Zhang Wayne State University CSC 5290 Cyber Security Practice 1

CSC 5290 Cyber Security Practice

  • Upload
    others

  • View
    9

  • Download
    8

Embed Size (px)

Citation preview

Page 1: CSC 5290 Cyber Security Practice

CSC5290CyberSecurityPractice

FengweiZhang

WayneStateUniversity CSC5290CyberSecurityPractice 1

Page 2: CSC 5290 Cyber Security Practice

WhoAmI?

•  FengweiZhang– AssistantProfessorofComputerScience– Office:MaccabeesBuilding,Room14109.3–  Emai:fengweiatwaynedotedu– Website:http://fengwei.me

•  CourseInformation–  Coursewebsite:http://www.cs.wayne.edu/fengwei/18sp-csc4992/index.html

– OfficeHours:Friday,01:00PM-02:30PM

WayneStateUniversity CSC5290CyberSecurityPractice 2

Page 3: CSC 5290 Cyber Security Practice

WhyStudySecurity?

WayneStateUniversity CSC5290CyberSecurityPractice 3

Page 4: CSC 5290 Cyber Security Practice

WhyStudySecurity?

It’scooltobeahackerIt’sahottopicandmediatalkaboutitIt’susefulforfindingajob

WayneStateUniversity CSC5290CyberSecurityPractice 4

Page 5: CSC 5290 Cyber Security Practice

CourseOverview

•  Providinghands-onexperienceinplayingwithsecuritysoftwareandnetworksystemsinalivelaboratoryenvironment

•  Takingbothoffensiveanddefensemethodstohelpstudentexploresecuritytoolsandattacksinpractice

•  Focusingonattacks,hackingfundamentals,defenses.

WayneStateUniversity CSC5290CyberSecurityPractice 5

Page 6: CSC 5290 Cyber Security Practice

CourseObjectives

•  Understandingonreal-worldsecurityvulnerabilities,exploitsanddefenses

•  Havinghands-onlabsinnetworkandsystemsecurityexperiments

•  Learningknowledgeofpracticalsecurityproblemsandtheirsolutions

WayneStateUniversity CSC5290CyberSecurityPractice 6

Page 7: CSC 5290 Cyber Security Practice

CourseLabs

•  Lab1:PacketSniffingandWireshark•  Lab2:BufferOverflow•  Lab3:ScanningandReconnaissance•  Lab4:MetasploitFramework•  Lab5:ReverseEngineeringandObfuscation•  Lab6:OSSecurityfortheInternetofThings•  Lab7:WirelessExploitation&Defenses•  Lab8:Firewalls&IntrusionDetectionSystems(IDS)

WayneStateUniversity CSC5290CyberSecurityPractice 7

Page 8: CSC 5290 Cyber Security Practice

LabAssignments

•  8labassignments– Sourcecode– WriteupPDF

•  SubmittingviaBlackboardwithasingleZipfile– https://canvas.wayne.edu– Makingsureyourfilecanbeunzippedacrossplatforms(Windows,MacOSX,Linux)

WayneStateUniversity CSC5290CyberSecurityPractice 8

Page 9: CSC 5290 Cyber Security Practice

TermProjects

•  Aresearchprojectwith1-2individuals– buildinganewsystem–  improvinganexistingtechnique– performingalargecasestudy

•  ProjectproposalsdueonFeb20– a2-pagedescription

•  ProjectpresentationsareonApril17&19•  ProjectfinalreportsdueonApril19

WayneStateUniversity CSC5290CyberSecurityPractice 9

Page 10: CSC 5290 Cyber Security Practice

CoursePrerequisites

•  CSC4420ComputerOperatingSystems

•  Linux/UnixCommands

•  Basiccomputersecurityconcepts•  BasicC,operatingsystems,andcomputernetworks

WayneStateUniversity CSC5290CyberSecurityPractice 10

Page 11: CSC 5290 Cyber Security Practice

PoliciesonLateSubmissions

•  Labandprojectdeadlineswillbefirm.•  Latehomeworkwillbeacceptedwitha10%reductioningradeforeachdaytheyarelateby.

•  Onceahomeworkassignmentisdiscussedinclass,submissionswillnolongerbeaccepted.

WayneStateUniversity CSC5290CyberSecurityPractice 11

Page 12: CSC 5290 Cyber Security Practice

GradingPolicy

WayneStateUniversity CSC5290CyberSecurityPractice 12

Page 13: CSC 5290 Cyber Security Practice

GradingScale

WayneStateUniversity CSC5290CyberSecurityPractice 13

Thegradesforthecoursewillbebaseduponthepercentagesgivenbelow

Page 14: CSC 5290 Cyber Security Practice

AcademicIntegrity

•  PleasereadtheUniversity'sAcademicIntegrityPage– http://doso.wayne.edu/academic-integrity.html

•  WSUStudentCodeofConduct.– http://doso.wayne.edu/assets/codeofconduct.pdf

WayneStateUniversity CSC5290CyberSecurityPractice 14

Page 15: CSC 5290 Cyber Security Practice

StudentDisabilitiesServices

•  Ifyouhaveadocumenteddisabilitythatrequiresaccommodations,youwillneedtoregisterwithStudentDisabilityServicesforcoordinationofyouracademicaccommodations.

•  TheStudentDisabilityServices(SDS)officeislocatedintheAdamanyUndergraduateLibrary.TheSDStelephonenumberis313-577-1851or313-202-4216(Videophoneuseonly).

WayneStateUniversity CSC5290CyberSecurityPractice 15

Page 16: CSC 5290 Cyber Security Practice

OtherResources

•  VMwaresoftwareandMicrosoftproductsthroughDreamsparkatWSU.–  InstallVMWareonyourlaptopsforhomedesktops–  http://apps.eng.wayne.edu/MPStudents/Dreamspark.aspx

•  KaliLinux-PenetrationTestingLinuxDistribution.–  https://www.kali.org/downloads/

WayneStateUniversity CSC5290CyberSecurityPractice 16

Page 17: CSC 5290 Cyber Security Practice

Lab0

•  MakesureyoucanloginasCSC5290studentonZeroClient– UseyourWSUaccessIDandpass– ProvideyouVMsforlabexperiments

WayneStateUniversity CSC5290CyberSecurityPractice 17

Page 18: CSC 5290 Cyber Security Practice

Lab0(cont’d)•  [email protected]–  ListHomepage(webinterfaceforsubscriberstojoin/leavelist,postmessages,viewarchives):http://lists.wayne.edu

•  Sendanemailtothelisttointroduceyourselfbynextclass

•  Sendazippedtest.txtfileonBackboardbythisweek

WayneStateUniversity CSC5290CyberSecurityPractice 18

Page 19: CSC 5290 Cyber Security Practice

NextClass

•  Lab1:PacketSniffingandWireshark– Beprepared!

WayneStateUniversity CSC5290CyberSecurityPractice 19