Dates | Topic & Assignments Due | Readings |
---|---|---|
Monday, 8/24/2020 |
Introduction to the Course Threat modeling |
Anderson, Ch. 1 Read the beginning of each chapter, skim the rest of the chapter: “Threat Modeling,” by Adam Shostack, Introduction, Chapter 1, Chapter 4 Optional: Schneier, Chapter 21 |
Monday, 8/31/2020 |
Risk Assessment Information Privacy Start Milestone 1: Risk Assessment |
Tim Cook, “‘Technology can harm, can help” |
Monday, 9/7/2020 | Labor Day (no class) | |
Monday, 9/14/2020 |
Information Privacy Lab due Introduction to Linux | Google Cloud Platform (GCP) Information Security in Organizations |
Tutorial: Introduction to Linux Tutorial: Introduction to Google Cloud Platform |
Monday, 9/21/2020 |
Milestone 1: Risk Assessment Draft due Lab: Introduction to Linux | Google Cloud Platform (GCP) due Introduction to Cryptography Symmetric Cryptography |
Anderson, Ch. 5, pp. 140–148, 153–155.
|
Monday, 9/28/2020 |
Symmetric cryptography, cont. |
|
Monday, 10/5/2020 |
Symmetric Cryptography Lab due Asymmetric Cryptography Digital Certificates and PKI
|
3rd edition: Anderson Ch. 3, pp. 97-103, 113–118 (section 3.4–3.4.4.2, 3.4.9–3.4.12) Gosney, “How LinkedIn’s password sloppiness hurts us all“ Goodin, “Why passwords have never been weaker“ |
Monday, 10/12/2020 |
Asymmetric Cryptography Lab due Digital Certificates Lab due Authentication and Passwords Password Cracking |
|
Friday, 10/16/2020 |
Milestone 2 Final Risk Assessment Report due |
|
Monday, 10/19/2020 |
Password Cracking Lab due Midterm exam opens Introduction to networking Vulnerability Scanning Vulnerability Exploitation |
|
Saturday, 10/24/2020 |
Midterm exam due |
|
Monday, 10/26/2020 |
Milestone 3 penetration test begins Vulnerability scanning lab due Exploitation demonstration Milestone group workday |
|
Wednesday, 10/28/2020 |
Vulnerability exploitation lab due |
|
Monday, 11/2/2020 |
Physical security The Human element of security |
Online video: Bruce Schneier, The Security Mirage “Cosmo, the Hacker ‘God’ Who Fell to Earth,” by Mat Honan. Anderson, Chapter 2, pp. 89–95; Chapter 13 |
Monday, 11/9/2020 |
Network Security Monitoring Incident Response |
“Network Security Monitoring,” by Richard Bejtlich, Chapter 1 |
Wednesday, 11/11/2020 |
Milestone 3 penetration test draft due |
|
Monday, 11/16/2020 |
Physical security lab due Social engineering lab due Respond case study: Equifax Malware Analysis |
Harvard case: “Data Breach at Equifax,” Srinivasan et al. Introduction and Chapter 0 of Practical Malware Analysis by Sikorski and Honig. |
Monday, 11/23/2020 | Fall Break (no class) | |
Monday, 11/30/2020 |
Network security monitoring lab due Recover case study: Maersk Milestone group work time |
“The Untold Story of NotPetya,” by Andy Greenberg |
Monday, 12/7/2020 |
Final Milestones 4-5 Report due Malware analysis lab due Course wrap-up Milestone group work time |
|
Thursday, 12/10/2020 |
Final exam period begins |
|
Wednesday, 12/16/2020 |
Last day of final exams |
|