School / Prep
ENSEIRB-MATMECA
Internal code
EI9RE315
Description
This course describes network architecture for SSI, intrusion detection, penetration testing, web security and also introduces applied cryptography.
Teaching hours
- CIIntegrated Courses24h
- TIIndividual work32h
- PRACTICAL WORKPractical work32h
Syllabus
Network architecture for ISS
Introduction to ISS
Objectives, properties
Principles
Vocabulary
Attacker profiles and threats
Network protocols
ISO model
Operation
Vulnerabilities, exploitation
Countermeasures
Network architectures
Partitioning
Security equipment
Firewalls
Proxies, application relays
Network intrusion detection
Detection by signature / heuristics
Detection on network capture / OS / application mechanisms
Standardization, aggregation and correlation of events
Reporting and synthesis
Penetration testing
Principle of computer intrusion
Comparison of penetration test / real intrusion
Objectives and approach of a penetration test intrusion test
Tools
Metasploit
Hping / Nping / Scapy
Nmap
Applied cryptography
Principles
Symmetrical and asymmetrical cryptography
Hash functions
Encryption and signature
Algorithms, modes
Software implementation of SSL
Study of several vulnerabilities
Problems, impacts
Exploitation and detection
Correction and protection
Certificates and key management infrastructures
Web security
Web browsing
Protocols
Browser, plug-ins, servers
Security models
Study of classic vulnerabilities (SQLi, XSS, etc.).)
Concept
Research and advanced exploitation
Detection and protection
Tools
Sqlmap / W3af / Burp
Assessment of knowledge
Initial assessment / Main session - Tests
Type of assessment | Type of test | Duration (in minutes) | Number of tests | Test coefficient | Eliminatory mark in the test | Remarks |
---|---|---|---|---|---|---|
Project | Report | 1 | ||||
Project | Defense | 1 |
Second chance / Catch-up session - Tests
Type of assessment | Type of test | Duration (in minutes) | Number of tests | Test coefficient | Eliminatory mark in the test | Remarks |
---|---|---|---|---|---|---|
Project | Report | 1 |