College of Computer Science and Technology, Zhejiang University, Summer 2015
Wednesday 14:05 – 17:30, Cao Guangbiao Building West Wing
Room 503 Lecture & Lab

Instructor

Kai Bu Email: kaibu@zju.edu.cn
Office: Room 503 Zetong Building.  Office hour: by appointment

Course Objective

This course aims to help students practice information security related attack and defense. As the saying from security research community goes, if you want to secure a system, hack it first. The course follows this principle in a project-oriented way. Project themes range from traditional authentication and DDoS to more recent taxi-hailing services and moving target defense. Through participating in an eight-week project, students are expected to practice hacking techniques as well as train their security mindset.

Prerequisites

Networking, Security, Programming

Grading

40% Demo
40% Report
20% Presentation
Bonus 10% Research-oriented project

Resources

Security Engineering, by Ross Anderson, Cambridge
EECS 354 Network Penetration and Security, by Yan Chen, Northwestern University
How to Do Great Research, by Nick Feamster (Princeton) and Alex Gray (Georgia Tech)
Understanding the Adversary Mindset, by Tadayoshi Kohno, University of Washington
Think like an Adversary: Security Analysis of Embedded Systems, by Wenyuan Xu, Zhejiang University