Information Systems Attacks and Defence
BASIC DATA
course listing
A - main register
course code
ITC8075
course title in Estonian
Infosüsteemide ründed ja kaitse
course title in English
Information Systems Attacks and Defence
course volume CP
-
ECTS credits
6.00
to be declared
yes
assessment form
Examination
teaching semester
autumn
language of instruction
Estonian
English
Study programmes that contain the course
code of the study programme version
course compulsory
IAVM23/25
no
IVCM25/25
no
Structural units teaching the course
IT - Department of Software Science
Course description link
Timetable link
View the timetable
Version:
VERSION SPECIFIC DATA
course aims in Estonian
- Anda tehniline ülevaade valitud ründemeetoditest ja nõrkustest, mida süsteemidesse sissemurdmiseks ära kasutatakse.
- Anda ülevaade tehnoloogilistest kaitsemeetmetest, kuidas käsitletud rünnete vastu süsteeme kaitsta.
- Anda osalejatele praktiline kogemus turvatestide läbiviimisel tehes seda isoleeritud laborikeskkonnas.
- Panna osalejad mõtlema nagu ründajad, et seeläbi neid muuta paremateks kaitsjateks.
course aims in English
- Provide an overview of selected attack methods and vulnerabilities the attackers are exploiting to compromise information systems.
- Provide an overview of technological defence methods for mitigation.
- Provide the learners a practical hands-on experience to conduct penetration tests by doing it in safe and isolated lab environment.
- Turn the students into better defenders, after learning to know the adversary.
learning outcomes in the course in Est.
- Teadmine erinevatest infosüsteemide ründemeetoditest ja nõrkustest.
- Teadmine tehnoloogilistest kaitsevahenditest infosüsteemide rünnakute vastu.
- Praktiline kogemus (labori) süsteemide turvatestide läbiviimisel
learning outcomes in the course in Eng.
- Knowledge about common attack methods and vulnerabilities of information systems.
- Knowledge about technological defence methods against cyber attacks.
- Practical experience in conducting penetration tests of (lab) systems.
brief description of the course in Estonian
- Infosüsteemide turvatestimine – sissejuhatus.
- Lokaalvõrkude ja laivõrkude ründed ja kaitse.
- Operatsioonisüsteemide ründed ja kaitse.
- Ründekood. Mäluhaldusvigade ärakasutamine.
- Veebirakenduste ründed ja kaitse.
brief description of the course in English
- Introduction into penetration testing.
- Local and wide area networks attacks and defence.
- Operating systems attacks and defence.
- Basics of exploitation and memory corruption vulnerabilities.
- Web applications attacks and defence.
type of assessment in Estonian
.
type of assessment in English
.
independent study in Estonian
.
independent study in English
.
study literature
- Jon Erickson: Hacking. The Art of Exploitation. Second Edition
- Dafydd Stuttard, Marcus Pinto: The Web Application Hacker’s Handbook. Second Edition
study forms and load
daytime study: weekly hours
4.0
session-based study work load (in a semester):
lectures
2.0
lectures
-
practices
2.0
practices
-
exercises
0.0
exercises
-
lecturer in charge
-
LECTURER SYLLABUS INFO
semester of studies
teaching lecturer / unit
language of instruction
Extended syllabus
2025/2026 autumn
Jozef Kostelansky, IT - Department of Software Science
English
    Grading_criteria.pdf 
    display more
    2024/2025 autumn
    Silver Saks, IT - Department of Software Science
    English
      Grading_criteria.pdf 
      2023/2024 autumn
      Silver Saks, IT - Department of Software Science
      English
        2022/2023 autumn
        Olaf Manuel Maennel, IT - Department of Software Science
        English
          2021/2022 autumn
          Olaf Manuel Maennel, IT - Department of Software Science
          English
            Grading_criteria.pdf 
            2020/2021 autumn
            Olaf Manuel Maennel, IT - Department of Software Science
            English
              Grading_criteria.pdf 
              2019/2020 autumn
              Olaf Manuel Maennel, IT - Department of Software Science
              English
                Grading_criteria.pdf 
                2018/2019 autumn
                Olaf Manuel Maennel, IT - Department of Software Science
                English
                  Grading_criteria.pdf 
                  Course description in Estonian
                  Course description in English