Difference between revisions of "Summerschool Aachen 2005/Schedule"

From C4 Wiki
Jump to: navigation, search
(Mon 19.)
(Tue 20.)
Line 5: Line 5:
  
  
=== Tue 20. ===
+
 
**Lecture: Stack and Heap Overflows (Christian Klein) [http://c0re.23.nu/~chris/presentations/overflow2005.pdf PDF], [http://untergrund.bewaff.net/~chris/bo/ examples]
+
 
**Lab: Stack and heap overflows – the basics, the techniques (Christian Klein, Ilja van Sprundel)
 
***[http://ilja.netric.org/files/labsession.pdf Ilja's Challanges]
 
***[http://community.core-sdi.com/~gera/InsecureProgramming/ Gera's Challanges]
 
***[http://www.insecure.org/stf/smashstack.txt Smashing The Stack For Fun And Profit]
 
***[http://www.enderunix.org/docs/eng/bof-eng.txt Buffer overflows demystified]
 
***[http://www.w00w00.org/files/articles/heaptut.txt w00w00 on Heap Overflows]
 
** CoffeeTableTalk: More Heap Overflows (Ilja van Sprundel) [http://md.hudora.de/presentations/summerschool/2005-09-21/vansprundel-ctt-heapoverflows.pdf PDF]
 
**Evening: Visit at the CCCCologne (Maximillian Dornseif)
 
 
=== Wed 21. ===
 
=== Wed 21. ===
 
**Lecture:
 
**Lecture:

Revision as of 13:55, 4 October 2005

Warning: The schedule is somewhat messed up. It needs to be synced with the 'official' schedule.

Course Schedule

Wed 21.

    • Lecture:
      • Fingerprinting (Maximillian Dornseif) PDF
      • ScaPy (Philippe Biondi) PDF MOV
    • Lab: Play with ScaPy, scanning the net (Philippe Biondi, Maximillian Dornseif)
    • Coffee Table Talk: HeapOverflow Protection (Yves Younan) PDF
    • Tech Report 'till then: (Yves Younan & Daniel Hodson) PDF

Thu 22.

    • Lecture: Formatstring bugs PDF MOV and Race conditions PDF MOV (Ilja van Sprundel)
    • Lab: Find an exploit, write an advisory
    • Coffee Table Talk: The Game of Go (Paul Boehm) MOV

Fri 23.

    • Lecture: Fuzzing (Ilja van Sprundel) PDF MOV
    • Lab: Fuzz whatever you can get your hands on (Ilja van Sprundel)
    • CoffeeTableTalk the scene (Christian Klein)
    • Evening: Visit at the Netzladen
    • Tech Report 'till then: Harald Vogt & NN

Mon 26.

Tue 27.

    • Lecture: Breaking the web (Maximillian Dornseif) PDF MOV, XSS Thesis.
    • Lab: Breaking the Web for real (Maximillian Dornseif) PDF /Exercises
    • Coffee Table Talk: Security, Science and Education (Felix Freiling), Security Visualisation (Florian Mansmann) PDF
    • Evening: CCCAC

Wed 28.

    • Lecture:
      • Malware (Christian Klein) [PDF]
      • Botnets, Firewall traversal, distributed C&C (Thorsten Holz)
    • CoffeeTableTalk: Breaking VPNs (Lars Völker) pdf
    • Lab:

Thu 29.

    • Lecture:
      • Attacking Anonymity Systems (Lexi Pimenidis)
      • Sniffing, Spoofing (ThorstenHolz) [slides here]
    • Lab:
    • Coffee Table Talk: Secure Software (Paul Boehm)
    • CoffeeTableTalk: the topology of covert conflict (Shishir Nagaraja) [Paper]
    • Evening: Party (Felix Freiling)

Fri 30.