Module Overview
This module teaches students the concepts and processes of vulnerability assessment and ethical hacking covering software, networks, and Web applications. Students will use state-of-the-art tools to identify real-world vulnerability issues in modern software and the protection mechanisms found in operating systems. Students will learn how to detect, patch, and develop extensions of protection mechanisms to mitigate attacks and improve security features of software. This module introduces the core methodological approaches to application vulnerability assessment, reverse engineering, and ethical hacking. Students will engage with novel technologies to attack or ‘penetration test’ vulnerable systems and applications. Students will then learn how to defend against such attacks using a mix of academic and industry-focused techniques.
This module covers need for security assessments, classifying vulnerabilities: software, penetration testing, memory corruption, cross site scripting, fundamentals of the C to understand code analysis, reverse engineering of software, simulated attacks, security assessment, intercepting data, and privilege escalation.
Note: I prepared the module content and syllabus for this course but did not deliver the teaching.
Syllabus
- Week 1: Intro to InfoSec & Governance
- Week 2: Reconnaissance & Footprinting
- Week 3: Scanning & Enumeration
- Week 4: Vulnerability Analysis
- Week 5: System Hacking & Exploitation
- Week 6: Sniffing & MITM Attacks
- Week 7: Social Engineering
- Week 8: Web Application Hacking
- Week 9: Wireless & Mobile Security
- Week 10: Cloud & IoT Security
- Week 11: Cryptography for Professionals
- Week 12: Pen-Testing Reporting & Ethics