Domain Track : Cybersecurity & Digital Forensic
domain-track-cybersecurity-digital-forensics
Syllabus
Faculty: Mr. Gyana Ranjana Panigrahi
Domain Objectives:
Domain Learning Outcomes:
Session 5 to 13
Session 14 to 16
Session 20 to 23
Session 24 to 26
Session 27 to 30
Session 31 to 32
Session 1 to 3
Session 27 to 29
Session 30 to 32
Session 33 to 35
Session 40 to 44
Session 45 to 50
Live Setup and configuration using core tools and techniques:
Domain Track Title : Cybersecurity & Digital Forensics
Track Total Credits ( T-P-P)(6-6-8)
Courses Division( list all divisions):
Security Risk Assessment (Ethical Hacking) (2-2-0)
Proactive Defence and Countermeasures (1-1-2)
Information & network security (2-2-0)
Cyber Hacking & Forensic Investigator (1-1-2)
Project (0-0-4)
Domain Objectives:
This domain focusses on two aspects of Cyber Security: analysis and assessment of risk plus how to minimize it, and, how to extract and use digital information from a wide range of systems and devices.
The domain is structured so that all students cover the same introductory material, but then choose to specialize in either Cyber Security or Digital Forensics.
Domain is used to secure important data from enemies.
It works as a safeguard of your computer from blackmail by the people who want to exploit the vulnerability.
Using domain, a company or organization can find out security vulnerability and risks.
The purpose of this domain is to evaluate the security of and identify vulnerabilities in target systems, networks or system infrastructure.
The domain entails finding and then attempting to exploit vulnerabilities to determine whether unauthorized access or other malicious activities are possible.
Domain Learning Outcomes:
The domain will cover basic digital forensics and network security, and also cover computer system tools and the Linux/UNIX operating system which are highly essential in the cyber world.
Able to deal with digital evidence in a professional manner (that includes adhering to appropriate legal guidelines).
It will then follow either the Cyber Security or Digital Forensics pathway within the course (though each leads to the same-named degree: the pathways are simply opportunities to specialize within the field).
In addition, all students will take a Research Methods module and complete a project module to devote them to the world of research for their future edifice and expertise.
Candidates after the completion of the domain have lucrative openings & scopes in the emerging areas surrounding research & development in academics, nuclear power plants, corporates, Govt. organization like railway, banking & also in national as well as International grounds with good designations as Chief Information Security Officer, Forensic Computer Analyst, Information Security Analyst, Digital Forensics Investigator, Digital Forensics specialist, Homeland Security Professional and many more.
Domain Syllabus:
- Security Risk Assessment (Ethical Hacking) (2-2-0) (50HRs)
- Footprinting through Search Engines
- WHOIS Footprinting
- Network Footprinting
- Website Footprinting
- DNS Footprinting
- Footprinting through Social Networking
- EMAIL Footprinting
- Google Hacking
- IP Scanner
- Port Scanner
- Vulnerability Scanner
- Application Scanner
- Exploits
- Denial of Services (DoS)
- Proxy
- Is your Password Hacked?
- Password Guessing
- Browser Password Hacking
- Application Password Hacking
- OS Password Hacking
- OS Password Hacking
- Server password Hacking
- Phishing
- Sniffer
- Session Hijacking
- VIRUS
- Ransomware
- Keylogger
- Trojan/RAT
- Wireless Hacking
- Kali Linux
- Metasploit Framework
- Proactive Defence and Countermeasures (1-1-2) (50HRs)
- Switch Security (Virtual LANS)
- PORT Security
- AUTO Secure
- Firewall – CISCO ASA (Initial Configuration via GUI)
- Security Policies (Default Security Policies Behaviour)
- STATIC NAT
- Redirect NAT
- DYNAMIC NAT
- PORT Address Translation
- WEB Filtering
- Authentication
- Device Authentication-Local
- Device Authentication-External
- Data Authentication-External
- Logging
- Site to site VPN (IPSEC)
- Remote Access VPN (IPSEC)
- Remote Access VPN (SSL)
- VLAN
- Trunk-VLA
- 3-
INFORMATION & NETWORK SECURITY - Overview of Information Security- Threats - Frauds, Thefts, Malicious Hackers, Malicious Code, Denial-of-Services Attacks and Social Engineering, Vulnerability–Types Database Security-Overview of Database - Database application security models-Data base auditing models-Application data auditing-Practices of database auditing. Data Loss prevention – Content Filtering - Device Control - Network DLP - Host DLP. Network Security & Web Security: Security Issues in TCP/IP – TCP, DNS, Routing (Topics such as basic problems of security in TCP/IP, IPsec, BGP Security, DNS Cache poisoning etc.), Network Défense tools – Firewalls, Intrusion Detection, Filtering, Distributed Firewalls, Security architecture of World Wide Web, Security Architecture of Web Servers, and Web Clients, Web Application Security –Cross-Site Scripting Attacks, Cross-Site Request Forgery, Https, Threat Modelling, Attack Surfaces.
- Configuring Window Firewall.
- Configuring Linux Firewall.
- Adding users,setting permissions in windows.
- Port Security.
- Access control List in Linux.
- Nmap scanning tool using both Linux and Windows.
- Installing and configuration of Linux firewall iptables.
- Study various methods for taping into wire.
- Study the steps for installing Wireshark, the packet sniffing tool for performing Network Analysis.
- Study of working with captured packets.
- Study of advanced Wireshark features.
- Study of security packet analysis.
- Cyber Forensics (1-1-2) (50HRs)
- Computer Forensics Investigation Process.
- Recovering Deleted Files from the evidence.
- Generating Hashes & Checksum Files.
- Calculating the MD5 value of the selected File.
- Viewing Files of Various Formats.
- Handling Evidence Data.
- Creating a Disk Image File of an HDD Partition.
- Understanding HDD & its File Systems.
- Recovering Deleted Files from Hard Disks Using WINHEX.
- Analysing File System Types Using the Sleuth Kit.
- Analyzing Raw Image Using Autopsy.
- Data Acquisition & Duplication.
- Investigating NTFS Drive Using DiskExplorer for NTFS.
- Viewing Content of Forensic Image Using AccessData FTK Imager Tool.
- Discovering & Extracting Hidden Forensic Material on Computers using Computer Forensics.
- Extracting Information about Loaded Processes Using Process Explorer.
- The viewing, Monitoring, and Analysing Events using the Event Log Explorer Tool.
- Performing Computer Forensic Investigation using the Helix Tool.
- Using Volatile Data in Linux System.
- Analyzing Non-Volatile Data in Linux System.
- Capturing and Analysing Logs of Computer using GFI Events Manager.
- Investigating System Log Data Using Xpolog Center Suite.
- Investigating Network Attacks using Kiwi Log Viewer.
- Investigating Network traffic using Wireshark.
- Investigating Web Attacks (Analysing Domain & IP Address Queries Using SmartWhois Tool.
- Project (0-0-4) (Major)
- Project from the field of Cybersecurity.
- Project from the field of Digital Forensics.
Session Plan for the Entire Domain:
- Security Risk Assessment (Ethical Hacking) (2-2-0) (50HRs)
- Footprinting through Search Engines
- WHOIS Footprinting
- Network Footprinting
Session 5 to 13
- Website Footprinting
- DNS Footprinting
- Footprinting through Social Networking
- EMAIL Footprinting
Session 14 to 16
- Google Hacking
- IP Scanner
- Port Scanner
- Vulnerability Scanner
Session 20 to 23
- Web Application Scanner
- Exploits
Session 24 to 26
- Denial of Services (DoS)
Session 27 to 30
- Proxy
Session 31 to 32
- Is your Password Hacked?
- Password Guessing
- Browser Password Hacking
- Application Password Hacking
- OS Password Hacking
- OS Password Hacking
- Server password Hacking
- Cisco Password Hacking
- Phishing
- Sniffer
- Session Hijacking
- VIRUS
- Ransomware
- Keylogger
- Trojan/RAT
- Wireless Hacking
- Kali Linux
- Metasploit Framework
- Proactive Defence and Countermeasures (1-1-2) (50HRs)
Session 1 to 3
- Switch Security (Virtual LANS)
- PORT Security
- AUTO Secure
- Firewall – CISCO ASA (Initial Configuration via GUI)
- Security Policies (Default Security Policies Behaviour)
- STATIC NAT
- Redirect NAT
Session 27 to 29
- DYNAMIC NAT
Session 30 to 32
- PORT Address Translation
Session 33 to 35
- WEB Filtering
- Authentication
- Device Authentication-Local
- Device Authentication-External
- Data Authentication-External
Session 40 to 44
- Logging
- Site to site VPN (IPSEC)
- Remote Access VPN (IPSEC)
Session 45 to 50
- Remote Access VPN (SSL)
- VLAN
- Trunk-VLAN
- Incident Response and Management (2-2-0) (50HRs)
- Security Information and Event Management (SIEM)
- Installing of OSSIEM
- Configuring OSSIM
- Forwarding DHCP Server Logs to OSSIM
- Install NXLog on Windows Server
- Configure NXLog on Windows Server to Forward Logs to OSSIM
- Configure OSSIM for processing DHCP Server logs
- Verify DHCP Server in OSSIM
- Configure Alarm for selected DHCP Server Events
- Verify Alarm in OSSIM
- Forwarding DNS Server logs to OSSIM
- Instal NXLog on Windows Server to forward logs to OSSIM
- Verify DNS Server Events in OSSIM
- Forwarding ASA Firewall to forward logs to OSSIM
- Configure OSSIM for processing ASA Firewall logs
- Verify ASA Firewall Events in OSSIM
- Configure Alarm foe selected ASA Firewall Events
- Verify Alarm in OSSIM
- Forwarding Security Events to OSSIM through HIDS Agent
- Deploying HIDS Agent
- Configuring HIDS Agent for USB Monitoring
- Verify USB Monitoring Events in OSSIM
- Configure OSSIM for the File Integrity Monitoring
- Verify File Integrity Monitoring Events in OSSIM
- Checking for Rootkit and Malicious Application via OSSIM
- Verify Rootkit and Malicious Application detection in OSSIM
- Cyber Forensics (1-1-2) (50HRs)
- Computer Forensics Investigation Process.
- Recovering Deleted Files from the evidence.
- Generating Hashes & Checksum Files.
- Calculating the MD5 value of the selected File.
- Viewing Files of Various Formats.
- Handling Evidence Data.
- Creating a Disk Image File of an HDD Partition.
- Understanding HDD & its File Systems.
- Recovering Deleted Files from Hard Disks Using WINHEX.
- Analysing File System Types Using the Sleuth Kit.
- Analysing Raw Image Using Autopsy.
- Data Acquisition & Duplication.
- Investigating NTFS Drive Using DiskExplorer for NTFS.
- Viewing Content of Forensic Image Using AccessData FTK Imager Tool.
- Discovering & Extracting Hidden Forensic Material on Computers using Computer Forensics.
- Extracting Information about Loaded Processes Using Process Explorer.
- Viewing, Monitoring and Analysing Events using the Event Log Explorer Tool.
- Performing Computer Forensic Investigation using the Helix Tool.
- Using Volatile Data in Linux System.
- Analysing Non-Volatile Data in Linux System.
- Capturing and Analysing Logs of Computer using GFI Events Manager.
- Investigating System Log Data Using Xpolog Center Suite.
- Investigating Network Attacks using Kiwi Log Viewer.
- Investigating Network traffic using Wireshark.
- Investigating Web Attacks (Analysing Domain & IP Address Queries Using SmartWhois Tool.
- Project (0-0-4) (Major)
- Security Risk & Ethical Assessment.
- Proactive Defence and Countermeasures.
- Incident Response and Management.
- Cyber Hacking & Forensic Investigator (Live investigation Acquisition, analysis and reporting using forensic tools and techniques).
List of Projects/ papers/jobs/products to be done in domain:
Live Setup and configuration using core tools and techniques:
- Security Risk & Ethical Assessment.
- Proactive Defence and Countermeasures.
- Incident Response and Management.
- Cyber Hacking & Forensic Investigator (Live investigation Acquisition, analysis and reporting using forensic tools and techniques).
Session plan & materials
No materials published yet.
