Lecture Material
Lectures will be held Wednesdays, 10:15 - 11:45 at room BIN-2.A.01.
Lecture | Date | Lecturer(s) | Slides 1-up | Slides 6-up | Release Date | Content (keyword(s)) | Remarks and References |
L00 | 20.09 | BS | L00-1up (PDF, 349 KB) | L00-6up (PDF, 237 KB) | 11.09 | Course Introduction and Organization | - |
L01 | 20.09 | BR | L01-1up (PDF, 1 MB) | L01-6up (PDF, 852 KB) | 11.09 | Basic Security Concepts | [1] |
L02 | 27.09 | BR | L02-1up (PDF, 2 MB) | L02-6up (PDF, 1 MB) | 26.09 | Cryptographic Principles | [2] |
L03 | 04.10 | BR | L03-1up (PDF, 2 MB) | L03-6up (PDF, 1 MB) | 03.10 | Security by Net. Layers | [1,8,9] |
L04 | 11.10 | BR | L04-1up (PDF, 2 MB) | L04-6up (PDF, 998 KB) | 10.10 | Cloud Security | [2,4,10] |
L05 | 18.10 | BR | L05-1up (PDF, 1 MB) | L05-6up (PDF, 829 KB) | 17.10 | ACL, FW, Policies | [1] |
L06 | 25.10 | BR | L06-1up (PDF, 1 MB) | L06-6up (PDF, 1 MB) | 24.10 | Intrusion Detection and Prevention Systems | [1,11,12] |
L07 | 01.11 | BR | 31.10 | Penetration Tests | [13,14] | ||
L08 | 08.11 | BR | L08-1up (PDF, 3 MB) | L08-6up (PDF, 1 MB) | 06.11 | Security Information and Event Management | [15.16] |
L09 | 15.11 | TG | L09-1up (PDF, 2 MB) | L09-6up (PDF, 1 MB) | 15.11 | Risk Management | References within slides |
L10 | 22.11 | AH | CNSP-L10-1up (PDF, 2 MB) | CNSP-L10-6up (PDF, 1 MB) | 22.11 | Cybersecurity and Machine Learning (ML) |
[17,18] |
L11 | 29.11 | CF | CNSP-L11-1up (PDF, 1 MB) | CNSP-L11-6up (PDF, 437 KB) | 26.11 | Concerns of Machine and Federated Learning (ML/FL) | |
L12 | 06.12 | BR Getoar Gallopeni Alexander Hofmann |
L12-6up (PDF, 702 KB) | 06.12 | Research and Industry Talk |
||
L13 | 13.12 | BR | L13-1up (PDF, 2 MB) | L13-6up (PDF, 1 MB) | 12.12 | Evaluations and Summary | Previous lectures |
L14 | 20.12 | All | Challenge Task | Challenge Task | - | - |
The files provided above may only be downloaded from a subnetwork of the University of Zurich's network. Thus, please use a VPN client from the outside. Information on the VPN setup can be found here. In case you have problems with downloading the files (e.g., showing error 404) check your VPN settings and delete your browser's cache!
References
Several references will be used as a basis during the lectures. However, two major references from W. Stallings below are recommended to provide a basis (seen in lectures M01 and M02) for further specific modules (M03 to M11). Specific references will be pointed out during the lectures or exercise sessions.
- William Stallings: Network Security Essentials: Applications and Standards (6th Edition 2016), Pearson.
- William Stallings: Cryptography and Network Security: Principles and Practice (7th Edition 2017), Pearson.
- Michael Steward: Network Security, Firewalls, and VPNS, ISBN 10: 076379130X
- Peter Mell, Timothy Grance. The NIST Definition of Cloud Computing. Special Publication 800-145. National Institute of Standards and Technology (NIST). 2011.
- Patrick Engebretson. The Basics of Hacking and Penetration Testing: Ethical Hacking and Penetration Testing Made Easy. Elsevier, 2013.
- Xin, Yang, Lingshuang Kong, Zhi Liu, Yuling Chen, Yanmiao Li, Hongliang Zhu, Mingcheng Gao, Haixia Hou, and Chunhua Wang. "Machine Learning and Deep Learning Methods for Cybersecurity." IEEE Access 6 (2018): 35365-35381.
- Khan, Suleman, Abdullah Gani, Ainuddin Wahid Abdul Wahab, Muhammad Shiraz, and Iftikhar Ahmad. "Network Forensics: Review, Taxonomy, and Open Challenges." Journal of Network and Computer Applications 66 (2016): 214-235.
- Edwards, P. N., Jackson, S. J., Bowker, G. C., & Knobel, C. P. (2007). Understanding infrastructure: Dynamics, tensions, and design.
- Pirayesh, H., & Zeng, H. (2022). Jamming Attacks and Anti-jamming Strategies in Wireless Networks: A Comprehensive Survey. IEEE Communications Surveys & Tutorials.
- Cloud Security Alliance. Top Threat to Cloud Computing Pandemic Eleven. URL: https://cloudsecurityalliance.org/artifacts/top-threats-to-cloud-computing-pandemic-eleven/
- Debar, H. (2000). An introduction to intrusion-detection systems. Proceedings of Connect, 2000.
- Canzanese, R., Mancoridis, S., & Kam, M. (2015, August). System call-based detection of malicious processes. In 2015 IEEE International Conference on Software Quality, Reliability and Security (pp. 119-124). IEEE.
- Engebretson, P. (2013). The Basics of Hacking and Penetration Testing: Ethical Hacking and Penetration Testing Made Easy. Elsevier.
- Messier, R. (2016). Penetration Testing Basics. Berkeley, CA: Apress.
- González-Granadillo, G., González-Zarzosa, S., & Diaz, R. (2021). Security information and event management (SIEM): Analysis, Trends, and Usage in Critical Infrastructures. Sensors, 21(14), 4759.
- Bhatt, S., Manadhata, P. K., & Zomlot, L. (2014). The Operational Role of Security Information and Event Management Systems. IEEE security & Privacy, 12(5), 35-41.
- Gereon, A. (2018). Hands-on Machine Learning with Scikit-Learn and Tensor Flow. O’Reily Media Inc., USA.
- Chio, C., & Freeman, D. (2018). Machine learning and security: Protecting systems with data and algorithms. " O'Reilly Media, Inc.".