Calendar of Hacker's Hut - 2017-2018 (still tentative)
wk. Tuesday Thursday Notes
1 14-Nov Lecture: Intro + Webapp (shortened) + SQL injections 16-Nov Lab: Introduction to the lab; Theory: SQL injections (wrap up). In this lectures we distribute the access to the lab Read the HTTP tutorial: http://www.tutorialspoint.com/http/index.htm; Some knowledge of SQL is needed here. Students who do not know anything about SQL should look at the first 10 topics (up until "SQL Delete") of the tutorial at w3school http://www.w3schools.com/sql/.
2 21-Nov  XSS / RFI / FI 23-Nov Lab: XSS Some knowledge of Javasctipy is needed here. Students who do not know anything about Javascript should look at the first 6 topics (up until "JS Comments") of the tutorial at http://www.w3schools.com/js/default.asp. 
3 28-Nov Stack and Buffer Overflow explained 30-Nov Sandro + lab Magicians: Stack & Buffer overflows, Introduction to Metasploit, Metasploit challenges. Exercises on Metasploit (buffer overflow and format string vulnerability).  
4 05-Dec Case study of a recent attack (guest lecture by Madison Ghurka) 07-Dec Industrial Control System Security  
5 12-Dec Hints Lecture 14-Dec Case Study: Automotive Security  
6 19-Dec Luca Allodi on cybercrime market 21-Dec Luca Allodi on cybercrime market  
WINTER BREAK
7 09-Jan Sandro: Defense Intrusion Detection 11-Jan TBD  
8 16-Jan NO LECTURE (POSSIBLY USED TO RECUPERATE) 18-Jan NO LECTURE (POSSIBLY USED TO RECUPERATE)  
Lecture: Intro + Webapp (shortened) + SQL injections Lab: introduction to thelab. Exercises on SQL injections etc
Lecture: XSS Lab: wrapping up the web-based challenges
Lecture: Stack and Buffer Overflow explained  Lab: Stack & Buffer overflows, Metasploit, Metasploit challenges. Exercises on Metasploit
Lecture: Case study of a recent attack (lecture by MG) Lecture: Industral Control Systems Security (Elisa Costante)
Lecutre: Defense (plus incident response) Lab: hints
Lecture: Luca Lecture: Luca