IMT6007
COINS IT Security Exercise
Sist undervist 2021
Høst
Gjøvik
Engelsk
Ingen karakterstatistikk ennå
Vi har ikke karakterdata for dette emnet ennå. Statistikk kan dukke opp når resultater er offentliggjort.
Om emnet
Faglig innhold
-Vulnerabilities in software
-Methods of manual and automated software inspection
-Participation in an IT security exercise
-Hosting a public IT security exercise
-Secure software development
-Validation of training approaches; motivation, relevance and impact
Læringsmål
After having completed the course, students are expected to have mastered the following learning outcomes:
Knowledge -State of the art in discovery and exploitation of IT system vulnerabilities -Capability and limits of validation of training methods
Skills -Source code inspection under time pressure -Ability to find and exploit vulnerabilities in software and systems -Development of novel attack methods and tools Assessment, selection and application of automated vulnerability discovery and removal approaches -Ability to determine limits, assess relevance and impact of group security exercises for the improvement of secure software development General competence -Ability to collaborate and communicate in a team of skilled researchers with diverse backgrounds
Læringsformer og aktiviteter
-Active participation in an IT security exercise, producing write-ups for found and exploited vulnerabilities.
-Individual reflection about relevance of vulnerabilities with respect to actual occurrence in the field, presence in exercises, focus in teaching material.
-Development of teaching material to improve software development training.
Compulsory requirements: -Two obligatory exercises must be passed. An obligatory exercise will usually consist of a write-up that is not included in the portfolio.