Display language
To modulepage Generate PDF

#40933 / #2

SoSe 2020 - WiSe 2021/22

English

International Information Security Contest

12

Seifert, Jean-Pierre

benotet

Portfolioprüfung

Zugehörigkeit


Fakultät IV

Institut für Softwaretechnik und Theoretische Informatik

34355100 FG S-Professur Security in Telecommunications

No information

Kontakt


TEL 16

Bauroth, Stephan

lehre@sect.tu-berlin.de

Learning Outcomes

Graduates of this module understand the concepts of common information security threats and exploits. They are able to develop and host server software for various platforms and programming languages. They are quick to comprehend and assess complex and obscure systems and have a hands-on understanding of security vulnerabilities, their impact, and necessary mitigations. On top, graduates of this module know how to teach information security in a playful manner.

Content

Participants explore software security hands-on with the goal to develop and host an international information security contest (¨Attack/Defense CTF”): every contesting team from all over the world receive virtual machines built during the project. The machines run participants’ programs with multiple artisanal security vulnerabilities, each exploitable over the network. To build the contest, participants will dive deep into the security of a platform and language of their choice and create a software project with well-hidden software vulnerabilities in this language. Furthermore, a game server will be developed as a team, including scripts to check the health of services for each contestant. As part of the development and hosting, participants will gain other technical and non-technical abilities, such as source control management, continuous integration, agile development, public relations as well as penetration testing and exploitation. The course gives participants the freedom to explore tools of their choice and build software both independently and in small teams.

Module Components

Pflichtgruppe:

All Courses are mandatory.

Course NameTypeNumberCycleLanguageSWSVZ
International Information Security ContestPJSoSeGerman/English8

Workload and Credit Points

International Information Security Contest (PJ):

Workload descriptionMultiplierHoursTotal
Attendance15.08.0h120.0h
Pre/post processing15.016.0h240.0h
360.0h(~12 LP)
The Workload of the module sums up to 360.0 Hours. Therefore the module contains 12 Credits.

Description of Teaching and Learning Methods

Self-study, active development, weekly meetings

Requirements for participation and examination

Desirable prerequisites for participation in the courses:

- Decent skills in a programming language of your choice - Willingness to adapt to new environments and situations - Real interest in information/computer/cyber security

Mandatory requirements for the module test application:

This module has no requirements.

Module completion

Grading

graded

Type of exam

Portfolio examination

Type of portfolio examination

100 Punkte insgesamt

Language

German/English

Test elements

NamePointsCategorieDuration/Extent
(Deliverable Assessment) CTF Execution20practical3 x 3h
(Deliverable Assessment) Development and Teamwork35practical8 x 1h
(Deliverable Assessment) Presentation15practical15 minutes
(Deliverable Assessment) Tests, Security Assessments and Review30practical8 x 1 h

Grading scale

Notenschlüssel »Notenschlüssel 1: Fak IV (1)«

Gesamtpunktzahl1.01.31.72.02.32.73.03.33.74.0
100.0pt86.0pt82.0pt78.0pt74.0pt70.0pt66.0pt62.0pt58.0pt54.0pt50.0pt

Test description (Module completion)

No information

Duration of the Module

The following number of semesters is estimated for taking and completing the module:
1 Semester.

This module may be commenced in the following semesters:
Sommersemester.

Maximum Number of Participants

The maximum capacity of students is 36.

Registration Procedures

1. QISPOS (bevorzugt) 2. Prüfungsamt

Recommended reading, Lecture notes

Lecture notes

Availability:  unavailable

 

Electronical lecture notes

Availability:  unavailable

 

Literature

Recommended literature
No recommended literature given

Assigned Degree Programs


This module is used in the following Degree Programs (new System):

Studiengang / StuPOStuPOsVerwendungenErste VerwendungLetzte Verwendung
This module is not used in any degree program.

Students of other degrees can participate in this module without capacity testing.

Miscellaneous

No information