[The University of New South Wales]

COMP3441/9441
Cryptography and Security
2004 Session 2



School of Computer Science and Engineering
The University of New South Wales
Sydney Australia

2004 Subject Schedule

subject to change

Readings shown in itallics under each topic. Black=required, Green=background (optional). Codes explained in the readings page.

Tutorials cover the work from the previous lecture. Exercises are posted the morning after the lecture.

Week
(starting monday)
Cryptography Security Exercises Notes Black
Lab
White
Lab
1. (26 Jul) Intro to crypto & framework ***
some reading
some reading
Black hats, script kiddies, law, ethics ***
some reading
some reading
tutorial Thursday and Friday tutorials start this week - -
2. (2 Aug) Confidentiality with secret keys ***
some reading
some reading
Access control, site security, social engineering ***
some reading
some reading
tutorial Monday-Wednesday tutorials start this week
Optional lecture 8-9: TCP/IP review
? -
3. (9 Aug) Hashing ***
some reading
some reading
Attack methods
- reconnoissance
- penetration
***
some reading
some reading
tutorial Optional lecture 8-9: Maths review sniff -
4. (16 Aug) Passwords **
Confidentiality with public keys **
some reading
some reading
further TCP/IP **
some reading
some reading
tutorial Seminar #1: Sniffing + lab ?
5. (23 Aug) Breaking cryptosystems ***
some reading
some reading
Firewalls
NAT
***
some reading
some reading
tutorial Seminar #2: DES, AES, Eliptic curves - no lab firewall
6. (30 Aug) Signatures ***
some reading
some reading
Host hardening ***
some reading
some reading
tutorial Seminar #3: Firewalls + lab ?
7. (6 Sep) SSL
IPsec
*
some reading
some reading
Intrusion detection systems
Sniffing
**
some reading
some reading
tutorial Seminar #4: Number Theory - no lab IDS
8. (13 Sep) VPNs *
some reading
some reading
Honeypots, honeytokens **
some reading
some reading
tutorial Seminar #5: Intrusion Detection Systems + lab honeypots
9. (20 Sep) Zero Knowledge Protocols */**
some reading
some reading
Folklore */**
some reading
some reading
tutorial Seminar #6: Honeypots + lab
Midsession Break
(27 Sept - 3 Oct)
DOS
10. (4 Oct)
Ron
PKI
some reading
some reading
PGP
Kerberos

some reading
some reading
tutorial Seminar #7: Denial of Service + lab
11. (11 Oct)
Ron
Digital cash, smartcards, creditcards, ATMs
some reading
some reading
eCommerce attacks, WWW, mail
some reading
some reading
tutorial Seminar #8: Spam - no lab elections
12. (18 Oct) Security Models: military, commercial.
some reading
some reading
Case Study: bookkeeping
some reading
some reading
Malware: worms, virus, trojans, spyware
some reading
some reading
tutorial Seminar #9: Online elections + lab worms
13. (25 Oct)
Case Study: ATMs
Case Study: Tamper Proof
some reading
some reading
Security Policy: writing, managing, incident & disaster response
some reading
some reading
tutorial Seminar #10: Malware + lab
14. (1 Nov) Review
- missed bits
- feedback
- exam
- Q&A
Esoteria
- quantum computing
- steganography

Broader Perspective
- crimes
- cyberterror
- patents copyright

Case Study: nuclear
tutorial Seminar review -

  * = 30 minute lecture
** = 60 minute lecture
*** = 90 minute lecture

last modified 5 July 2005 | maintained by richard buckland