Timothy H. Knautz

Lecturer, University of Wisconsin-Parkside


Web Security


The following, is general information concerning the Web Secirity course.

COURSE DESCRIPTION

This course introduces the student to the basics of Web Security. The field of computer security is, in general, one of the hottest topics in Computer Science. E-Commerce systems are now extremely common. These systems are critical to the operation of many of today's businesses from Wal-Mart to IBM. As these systems become more and more prevalent, the temptation to abuse these systems becomes greater and greater. This course will focus on the hacker and the security holes exploited by the attacker. The heart of this course is to show and explain the real-world exploits/hacks so that you, as a security minded professional, can spot and eradicate the security breaches.

Course Content

Much of the content of this course comes from the book,

Web Hacking: Attacks and Defense, by McClure, Stuart; Shah, Saumil; Shah, Shreeraj, Addison Wesley/Pearson Education, 2003, ISBN: 0-201-76176-9

Day 1 - The E-Commerce Playground

Day 2 - The Tools of the Trade

Day 3 - How Do They Do It?

Final Examination

Unfortunately, at this point I have no information regarding the final examination. I am currently waiting for Prof. Gerndt and Prof. Suetter to decide how the final examination should be administered. It should be noted, however, that we did discuss doing it at the end of June. (2009-06-02)


If you have any comments about this page or CSCI 466, drop me an email: knautz at uwp dot edu.

Updated: May 2009 by THK.