Data and Applications Security (CS 6348) 
 
     Time and Location :  F 10am-12:45pm@ECSN 2.126
     
Instructor                            :   Murat Kantarcioglu
Office Hours & Location :  Thursday/Friday 4pm-5pm@ECSS 3.225
 
       Teaching Assistant             :   Ceren Abay
Office Hours & Location : Tuesday 08:30-10:00, Thursday 15:30-17:00.

Prerequisites                  :   CS 5343
                        

Grading:

       

  •   Homework   %16 (4 homework, each worth 4%)
  •   Project         %24 (Group project (up to 3 people) that requires programming)
  •   Midterm       %25
  •   Final            %35 (All topics covered included)

 

   Course Topics: (tentative)
The course will teach principles, technologies, tools and trends for data
and applications security. Please see the course syllabus for details.

         
           Textbook:    
      

       None.

 Course Outline:

01.12.18

  • Access control basics
  • Reading:  Fred B. Schneider’s book chapter  (pdf)

01.19.18

  • Access Control Foundations
  • Reading: Fred B. Schneider’s book chapter (pdf)
  • Reading:  HRU paper (pdf)

01.26.18

  • Access control models

02.02.18

  •  Integrity/Hybrid Models

02.09.18

  • Basic Cryptography Overview
  • Authentication
  • Reading:  Fred B. Schneider’s book chapter (pdf)
  • Homework 1 is available on elearning.
  • Project Description is available on elearning

02.16.18

02.23.18

  • Block Chain continues..

03.02.18

  • Database Security
  • Encrypted Data storage in Databases
  • Reading:  Please read the following overview paper (pdf)
  • Reading:  Intel Sgx Overview (link)  
  • Reading:  Please read the following tutorial from Microsoft Research (pdf)
  • Homework 2 is available on elearning.

03.09.18

  • Access control in distributed systems
  • Reading:  Please read the following overview paper

03.16.18

  • Spring Break !!!

03.23.18

  • Midterm !!!

03.30.18

  • SQL and Code injection attacks
  • Reading: Please see the tutorial from Oracle.

04.06.18

  • Introduction to Data Privacy
  • Reading: K-annonymity (pdf), l-diversity (pdf), differential-privacy (pdf),
  • privacy-preserving distributed data mining (pdf)
  • Homework 3 is available on elearning.

04.13.18

  • Introduction to Data Privacy cont.

04.20.18

  • Introduction to Data Privacy cont.
  • Homework 4 is available on elearning
04.27.17

  • Introduction to Data Privacy cont.

05.05.17

Final  Exam

  • We will have the final exam at the time scheduled by the university.
  • It will be held on :5/5/2018, Saturday 11:00AM - 1:45PM @ ECSN 2.126