Course Description

“Comprehensive understanding of network security and corresponding solutions, including cryptography, access control, secure Web transactions, e-mail security, and viruses.”

Course Objectives

Course Learning Outcomes

The course will be a combination of in-person lectures on Wednesdays and papers to read and discuss on Mondays. Both will occur during the regularly scheduled class period.

Course Topics

First half of the course: Network attacks, network defenses, Network Intrusion Detection Systems (NIDS), and NIDS evasion…

-Crypto basics (maybe review) -Network basics (maybe review) -Physical and link-layer attacks, WiFi attacks -Routing and transport-layer attacks -Side channel attacks on network protocols -DNS attacks -Web security -Firewalls and NAT -VPNs -NIDS -NIDS evasion

Second half of the course: Information controls on the Internet and related Internet measurement research…

-On-path censorship (Great Firewall of China as an example) -In-path censorship (Great Cannon and Russia’s TSPU as an example) -In-path machine-in-the-middle attacks (NSA QUANTUM INSERT and Turk Telekom as examples) -In-path machine-in-the-middle attacks (Great Cannon as an example) -Surveillance (WeChat and Meituan as examples) -Throttling (Russia’s TSPU as an example) -Internet blackouts


Refer to the course website for readings on Mondays. You are expected to read the assigned paper(s) for each day and come prepared to discuss it.


You must refrain from uploading to any course shell, discussion board, or website used by the course instructor or other course forum, material that is not the student’s original work, unless the students first comply with all applicable copyright laws; faculty members reserve the right to delete materials on the grounds of suspected copyright infringement.

