Skip to main content
Skip header

Advanced Computer Security

Type of study Follow-up Master
Language of instruction English
Code 460-4165/02
Abbreviation PB
Course title Advanced Computer Security
Credits 6
Coordinating department Department of Computer Science
Course coordinator prof. Ing. Ivan Zelinka, Ph.D.

Subject syllabus

Lectures

Key principles of system and data protection, the role of malware as one of the greatest threats in the modern world, cyber threats, attacks, and vulnerabilities.
The current state of cybersecurity and the classification of cyber attacks (Mitre ATT&CK, CVE)
Computer security standards (NIS2, OWASP, ISO).
Approaches to software penetration testing.
Risk analysis and incident management.
Social engineering and phishing methods (Phishing, Vishing, Smishing).
Supply chain attacks.
Internet robot networks and denial-of-service attacks (DoS, DDoS).
Forensic investigation techniques.
Attacks using artificial intelligence.
Malware and its role in cybersecurity. .
Advanced malware technologies.
Cyber weapons.


Laboratories

Basics of working with security tools
Mapping attacks using MITRE ATT&CK
OWASP Top 10 in practice
Mini-penetration test
Risk analysis and incident scenarios
Phishing campaign
Supply Chain Attack in a sandbox
Botnet and DoS attack
Digital forensic analysis of logs
Malware in a sandbox
AI-powered attacks
Cyber operation simulation

E-learning

An AI assistant will be used for e-learning support, providing students with interactive and continuous assistance in their studies, including algorithms. The assistant will contain a complete knowledge base for the course, including theoretical concepts, practical demonstrations, and laboratory exercises. Students will be able to ask questions and obtain explanations of algorithms. The AI assistant will enable faster understanding of complex concepts, thereby supporting more effective self-study and facilitating the completion of laboratory tasks throughout the course.

Literature

Ross J. Anderson. Security Engineering: A Guide to Building Dependable Distributed Systems. 3rd Edition. Wiley, 2020. ISBN 978-1119642787 .
Dostupné z: https://www.wiley.com/en-us/Security+Engineering%3A+A+Guide+to+Building+Dependable+Distributed+Systems%2C+3rd+Edition-p-9781119642787

Bruce Schneier. Applied Cryptography: Protocols, Algorithms, and Source Code in C. 2nd Edition. Wiley, 2015. ISBN 978-1119183471 .
Dostupné z: https://onlinelibrary.wiley.com/doi/book/10.1002/9781119183471

Georgia Weidman. Penetration Testing: A Hands-On Introduction to Hacking. No Starch Press, 2014. ISBN 978-1593275648 .
Dostupné z: https://nostarch.com/pentesting

Michael Sikorski, Andrew Honig. Practical Malware Analysis: The Hands-On Guide to Dissecting Malicious Software. No Starch Press, 2012. ISBN 978-1593272906 .
Dostupné z: https://nostarch.com/malware

Advised literature

Jean-Philippe Aumasson. Serious Cryptography: A Practical Introduction to Modern Encryption. No Starch Press, 2017. ISBN 978-1593278267 .
Dostupné z: https://nostarch.com/seriouscryptography

Royce Davis. The Art of Network Penetration Testing: Taking over any company in the world. Manning, 2021. ISBN 978-1617296826 .
Dostupné z: https://www.manning.com/books/the-art-of-network-penetration-testing

Jon Erickson. Hacking: The Art of Exploitation. 2nd Edition. No Starch Press, 2008. ISBN 978-1593271442 .
Dostupné z: https://en.wikipedia.org/wiki/Hacking%3A_The_Art_of_Exploitation

Eldad Eilam. Reversing: Secrets of Reverse Engineering. Wiley, 2005. ISBN 978-0764574818 .
Dostupné z: https://en.wikipedia.org/wiki/Reversing%3A_Secrets_of_Reverse_Engineering