You must write one report during this course. Choose one of the suggested topics listed below. You may also suggest your own topic. Any topic not on the list below requires approval from the course staff. The report must be written in Norwegian or English. A report should contain between 5 and 10 pages of text (not including title page and abstract). Two students may collaborate on a report, in this case the report must contain 10 pages of text. Only reports in the PDF format will be accepted.
The report must be turned in on time. If you fail to meet the deadline, you'll automatically fail the course.
Topics
- Pharming.
- What is it?
- Why is pharming so dangerous?
- How can be protect against pharming?
- Cross-Site Request Forgery.
- What is it?
- Describe some CSRF attacks
- How can be protect against CSRF?
- Give an overview of common web-based attacks.
- Who publishes lists of common attacks?
- Are these lists useful?
- Is it enough to protect against the attacks on these lists?
- Identity theft.
- What is it?
- How can you protect yourself?
- Do we need better authentication techniques?
- Introduction to (D)DoS.
- What is (D)Dos?
- Describe some common (D)Dos attacks
- How can you defend against (D)DoS attacks?
- PKI architectures.
- Give an overview of different architectures
- When should the different architectures be used?
- Cryptographic modules. Answer the questions:
- What is a cryptographic module?
- How are cryptographic modules used?
- Why is some cryptographic modules vulnerable to attacks?
- Non-repudiation.
- Describe (traditional) non-repudiation
- Is non-repudiation really possible in practice?
- Discuss practical alternatives to non-repudiation
- Security and usability.
- Describe a development process for secure and useable applications
- Why is it important to consider both security and usability from the start?
- What can we learn from open-source collaborative techniques?
- Introduction to risk management.
- Describe the steps in a risk management process
- Illustrate the steps with a case study
- Describe the main goal of risk management
Last updated 06.09.09.
Webmaster KJH
|