IMT3491

Ethical Hacking and Penetration Testing

Last taught 2017

Autumn

English

Overview

39 candidates

Average grade

B

3.87

0.02

Pass rate

97%

same

Grade distribution
Average over time
Pass rate over time

About this course

Content

-Ethical hacking and penetration testing - definitions
-Penetration testing methodologies
-Hands-on penetration testing

Learning outcomes

Knowledge: 
-Explain how a penetration test is planned, executed, documented and terminated.
-Account for vulnerabilities in general and common services running on internal and external servers for a generic company.
-Predict client side vulnerabilities and use the new methods for security breaches that may occur here.

Skills:
-Master the most common hacking and penetration testing tools and apply these tools to perform simple penetration testing tasks.
-Carry out structured and effective search for security issues in computer systems and computer networks.
-Construct  effective penetration tests given existing threats towards software, networks, and network services.
-Use and abuse access to one system in order to gather more information about the networks and services used by this system.

General competence:
-Awareness of vulnerabilities in software both at server and client side, with an extra focus on network applications.
-Sensitivity for potential vulnerabilities in the computer systems and networks of a generic company, and ability to make an analysis of potential threats based on a network description.
-Overview of a wide set of tools for testing and accessing systems and networks.

Teaching methods

-Lectures
-Lab. work
-Project work

Coursework requirements:
2 (two) approved exercises.