Crypto pages
Personal links
Third-party links
My sponsors & affiliations
My previous sponsors & affiliations
edit SideBar
|
InfSec2016
Security in Information Systems
- This is a final course at CIMAT. The following corresponds to the Zacatecas Campus.
Description
- This is an introduction course to the very wide field of computing, data networks, and information security. It will cover information security, data network security, and relevant aspects of cryptography.
Objective
- Review the general topics on the information security that affects the information systems.
Specific objectives
- Bring interest to the assistnats to the diverse areas of informatics that require specific security aspects, and to demonstrate the consequences of an inadecuate use of the information resources, and its possible solutions
- It will set the basis of cryptography in order to provide security to services and applications. It will be demonstrated the existent tools for the security expert, and the administration aspects of the information security
- It is also a goal of this module that the assistants seek deeper detail about the topic
Organization
- This course is offered once in CIMAT Zacatecas
- The lectures will be offered daily from October 24th to November 17th
- There will be a practice test, and talk, and a written exam
Topics
- Introducción
- Introducción a la seguridad en los sistemas de información
- Conceptos generales de la seguridad de la información
- Criptografía
- Introducción a la criptografía
- Criptografía Simétrica
- Criptografía Asimétrica
- Infraestructura de Llave Pública (PKI)
- Criptografía en la seguridad de la información
- Firmas digitales
- Privacidad y Seguridad
- Tópicos selectos de criptografía aplicada
- Seguridad Perimetral
- Modelo TCP/IP
- IGMP
- IP
- TCP/UDP
- Seguridad en redes
- Intranet, Extranet, Internet. DMZ
- Planeación de una red de datos
- Segmentación en IPv4, e IPv6
- SNMP
- Políticas de acceso
- Administración de la red, y sus herramientas
- Seguridad perimetral
- Firewall
- Mecanismos de prevención y detección de intrusos
- Pasarelas de aplicación
- Redes privadas virtuales
- Privacidad en la red
- Seguridad versus privacidad
- Técnicas de anonimato en la red
- Seguridad del Software y políticas de seguridad
- Estándares y mejores prácticas de la seguridad de la información en el desarrollo del software
- Certificaciones relacionadas a la seguridad en sistemas de información
- ISO 27001 - Sistemas de Gestión de Seguridad de la Información
- Principales controles y mecanismos para la detección y mitigación de riesgos de seguridad en aplicaciones
- Creación y gestión de políticas de seguridad informática
- Vulnerabilidades de software
Calendar
- 10/24 - Introduction
- 10/25 - Status 2015 + Malware
- 10/26 - Intro to Crypto
- 10/27 - AES
- 10/28 - Hash + tools
- 10/31 - RSA + signatures
- 11/01 - More on PKI
- 11/03 - ECC + PQCrypto
- 11/04 - Complexity + IND-CCA/CPA
- 11/07 - Selected topics
- 11/07 - Data networks
- 11/08 - Presentation session 1
- 11/09 - Presentation session 2
- 11/10 - Development models
- 11/11 - Invited lecturer
- 11/16 - Project presentation 1
- 11/17 - Project presentation 2
Grades
No.
| Concept
| Porcentage
|
---|
1
| Exam
| 40
| 2
| Talk
| 20
| 3
| Project
| 40
| #
| Total
| 100
|
Projects (Pick one on first served basis)
- M-PIN (Auth)
- Botnet
- Group chat
- Game: Conquian
- Mini TOR
- Denuncia anónima
- Sistema de digitalización masiva y firma de documentos
- Game: 2D tanks
- Expediente clínico
- Password manager
- Any other software proposal
- Other encryption software
- Other authentication software
Essay options (talk)
- Analysis of the security in mobile OS
- Virus Morris
- S7 Protocol (WhatsApp/Signal)
- Cyberwar
- Snowden
- Assagne (Wikileaks)
- Bitcoin
- Mirai malware
- Samsung Knox
- Antivirus 2016 Status: best, comparison (at least 10)
- Facebook privacy
Rules (for my sections)
- Email delivery only to luis.dominguez
- Pack your homework and name the file appropriately: t1_lastname.zip
- Use PGP to encrypt your file. Public Key
- Time delivery is at mid-night of the day, 10\% penalty per delayed day
- No plagiarism
- Include bibliography
- Add documentation in LNCS format to your homework:
- For programs, the report must be 3-5 pages
- For essay, 5-10 pages
Slides (For my sections)
Video
Video Video
|