csc 5290 cyber security practice
TRANSCRIPT
CSC5290CyberSecurityPractice
FengweiZhang
WayneStateUniversity CSC5290CyberSecurityPractice 1
WhoAmI?
• FengweiZhang– AssistantProfessorofComputerScience– Office:MaccabeesBuilding,Room14109.3– Emai:fengweiatwaynedotedu– Website:http://fengwei.me
• CourseInformation– Coursewebsite:http://www.cs.wayne.edu/fengwei/18sp-csc4992/index.html
– OfficeHours:Friday,01:00PM-02:30PM
WayneStateUniversity CSC5290CyberSecurityPractice 2
WhyStudySecurity?
WayneStateUniversity CSC5290CyberSecurityPractice 3
WhyStudySecurity?
It’scooltobeahackerIt’sahottopicandmediatalkaboutitIt’susefulforfindingajob
WayneStateUniversity CSC5290CyberSecurityPractice 4
CourseOverview
• Providinghands-onexperienceinplayingwithsecuritysoftwareandnetworksystemsinalivelaboratoryenvironment
• Takingbothoffensiveanddefensemethodstohelpstudentexploresecuritytoolsandattacksinpractice
• Focusingonattacks,hackingfundamentals,defenses.
WayneStateUniversity CSC5290CyberSecurityPractice 5
CourseObjectives
• Understandingonreal-worldsecurityvulnerabilities,exploitsanddefenses
• Havinghands-onlabsinnetworkandsystemsecurityexperiments
• Learningknowledgeofpracticalsecurityproblemsandtheirsolutions
WayneStateUniversity CSC5290CyberSecurityPractice 6
CourseLabs
• Lab1:PacketSniffingandWireshark• Lab2:BufferOverflow• Lab3:ScanningandReconnaissance• Lab4:MetasploitFramework• Lab5:ReverseEngineeringandObfuscation• Lab6:OSSecurityfortheInternetofThings• Lab7:WirelessExploitation&Defenses• Lab8:Firewalls&IntrusionDetectionSystems(IDS)
WayneStateUniversity CSC5290CyberSecurityPractice 7
LabAssignments
• 8labassignments– Sourcecode– WriteupPDF
• SubmittingviaBlackboardwithasingleZipfile– https://canvas.wayne.edu– Makingsureyourfilecanbeunzippedacrossplatforms(Windows,MacOSX,Linux)
WayneStateUniversity CSC5290CyberSecurityPractice 8
TermProjects
• Aresearchprojectwith1-2individuals– buildinganewsystem– improvinganexistingtechnique– performingalargecasestudy
• ProjectproposalsdueonFeb20– a2-pagedescription
• ProjectpresentationsareonApril17&19• ProjectfinalreportsdueonApril19
WayneStateUniversity CSC5290CyberSecurityPractice 9
CoursePrerequisites
• CSC4420ComputerOperatingSystems
• Linux/UnixCommands
• Basiccomputersecurityconcepts• BasicC,operatingsystems,andcomputernetworks
WayneStateUniversity CSC5290CyberSecurityPractice 10
PoliciesonLateSubmissions
• Labandprojectdeadlineswillbefirm.• Latehomeworkwillbeacceptedwitha10%reductioningradeforeachdaytheyarelateby.
• Onceahomeworkassignmentisdiscussedinclass,submissionswillnolongerbeaccepted.
WayneStateUniversity CSC5290CyberSecurityPractice 11
GradingPolicy
WayneStateUniversity CSC5290CyberSecurityPractice 12
GradingScale
WayneStateUniversity CSC5290CyberSecurityPractice 13
Thegradesforthecoursewillbebaseduponthepercentagesgivenbelow
AcademicIntegrity
• PleasereadtheUniversity'sAcademicIntegrityPage– http://doso.wayne.edu/academic-integrity.html
• WSUStudentCodeofConduct.– http://doso.wayne.edu/assets/codeofconduct.pdf
WayneStateUniversity CSC5290CyberSecurityPractice 14
StudentDisabilitiesServices
• Ifyouhaveadocumenteddisabilitythatrequiresaccommodations,youwillneedtoregisterwithStudentDisabilityServicesforcoordinationofyouracademicaccommodations.
• TheStudentDisabilityServices(SDS)officeislocatedintheAdamanyUndergraduateLibrary.TheSDStelephonenumberis313-577-1851or313-202-4216(Videophoneuseonly).
WayneStateUniversity CSC5290CyberSecurityPractice 15
OtherResources
• VMwaresoftwareandMicrosoftproductsthroughDreamsparkatWSU.– InstallVMWareonyourlaptopsforhomedesktops– http://apps.eng.wayne.edu/MPStudents/Dreamspark.aspx
• KaliLinux-PenetrationTestingLinuxDistribution.– https://www.kali.org/downloads/
WayneStateUniversity CSC5290CyberSecurityPractice 16
Lab0
• MakesureyoucanloginasCSC5290studentonZeroClient– UseyourWSUaccessIDandpass– ProvideyouVMsforlabexperiments
WayneStateUniversity CSC5290CyberSecurityPractice 17
Lab0(cont’d)• [email protected]– ListHomepage(webinterfaceforsubscriberstojoin/leavelist,postmessages,viewarchives):http://lists.wayne.edu
• Sendanemailtothelisttointroduceyourselfbynextclass
• Sendazippedtest.txtfileonBackboardbythisweek
WayneStateUniversity CSC5290CyberSecurityPractice 18
NextClass
• Lab1:PacketSniffingandWireshark– Beprepared!
WayneStateUniversity CSC5290CyberSecurityPractice 19