Penetration Testing (PET)
6/7. Semester
5 ECTS | 4 SWS
Continuous Assessment (CA)
Test Systems Like a Hacker: Identify vulnerabilities, simulate cyberattacks, and demonstrate where systems need improvement.
Contents
- Linux & bash for hackers
- Discovery & Intelligence Gathering (passive and active tools)
- Exploit types (SQLi, file upload, priv esc, RCE, directory traversal,...)
- netcat and reverse shell
- Many penetration testing environments
Competencies
Students are able to
- know the terminology and standard approaches for penetration testing,
- use a standard hacking toolbox, such as e.g. Kali Linux,
- know the difference between active and passive information gathering, and to apply both,
- explain the usual attack methodologies, and which programming errors lead to those,
- put the attack components together from an entrapping to achieving the final goal,
- write a professional penetration testing report.
Literature
- Kumar Velu: Mastering Kali Linux for Advanced Penetration Testing. Packt Publishing
- Allsopp: Advanced Penetration Testing: Hacking the World's Most Secure Networks. Wiley.
- Kim: The Hacker Playbook: Practical Guide To Penetration Testing. CreateSpace Independent Publishing Platform.
Lecturer
Recommended Previous Knowledge
Module Details
| Semester |
6/7 |
| Lecture Language |
German |
|
Frequency
|
Not regularly
Je nach Verfügbarkeit des externen Experten.
|
| Credit Points (ECTS)
|
5 |
| Course Coordinator |
Prof. Dr. Sachar Paulus |
| Duration |
1 Semester |
|
Course Achievement
|
None |
|
Prerequisite for exam
|
None |
|
Exam
|
Continuous Assessment (CA) |
Weekly Hours (SWS)
| Lecture |
2 SWS |
| Exercises |
2 SWS |
| Sum |
4 SWS |
Work Load
| Lecture |
30 h |
| Lab |
60 h |
| Self Study |
30 h |
| Workshop |
30 h |
| Sum |
150 h |