Virtual Open-Source Labs for Web Security Education

被引:0
|
作者
Tao, Lixin [1 ]
Chen, Li-Chiou [1 ]
Lin, Chienting [1 ]
机构
[1] Pace Univ, Seidenberg Sch Comp Sci & Informat Syst, Pleasantville, NY 10570 USA
关键词
Network security; Virtual labs; Web technology; Web security;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Web security education depends heavily on hands-on labs that guide the students in developing web applications, evaluating the effectiveness of available security mechanisms, and detecting the security flaws of existing web applications. Since a typical web application runs on multiple servers including web servers, application servers and database servers, it has been a great challenge in supporting them in university laboratories. This paper introduces some of our virtual web security labs developed as part of our NSF SWEET (Secure WEb dEvelopment Teaching) and Department of Defense Information Assurance Scholarship projects. All of these labs are developed on our open-source Ubuntu virtual machines, and all servers and applications are open-source thus are freely available. Course modules have been developed to use these open-source virtual labs to study cryptography, HTTP and HTTPS protocols, and introduction to Java web technologies. All of these resources are freely available to the public.
引用
收藏
页码:280 / 285
页数:6
相关论文
共 50 条
  • [41] Semantic Web support for Open-source Software Development
    Dillon, Tharam S.
    Simmons, Gregory
    [J]. SITIS 2008: 4TH INTERNATIONAL CONFERENCE ON SIGNAL IMAGE TECHNOLOGY AND INTERNET BASED SYSTEMS, PROCEEDINGS, 2008, : 606 - +
  • [42] Accessible from the open web: a qualitative analysis of the available open-source information involving cyber security and critical infrastructure
    Zhang, Yuxuan
    Frank, Richard
    Warkentin, Noelle
    Zakimi, Naomi
    [J]. JOURNAL OF CYBERSECURITY, 2022, 8 (01):
  • [43] Web-Based Open-Source Tool for Isotachophoresis
    Avaro, Alexandre S.
    Sun, Yixiao
    Jiang, Kaiying
    Bahga, Supreet S.
    Santiago, Juan G.
    [J]. ANALYTICAL CHEMISTRY, 2021, 93 (47) : 15768 - 15774
  • [44] Protecting privacy and open competition with Almond: An open-source virtual assistant
    Stanford University, United States
    不详
    不详
    [J]. XRDS: Crossroads, 2019, 1 (40-44): : 40 - 44
  • [45] VIRTUAL LABS IN EDUCATION
    Petroni, A.
    Bigliardi, B.
    Dormio, A., I
    Filippelli, S.
    Galati, F.
    [J]. 12TH INTERNATIONAL CONFERENCE OF EDUCATION, RESEARCH AND INNOVATION (ICERI2019), 2019, : 7277 - 7281
  • [46] A Cloud Based System to Sense Security Vulnerabilities of Web Application in Open-Source Private Cloud IAAS
    Kankhare, Deepak Dattatray
    Manjrekar, A. A.
    [J]. 2016 INTERNATIONAL CONFERENCE ON ELECTRICAL, ELECTRONICS, COMMUNICATION, COMPUTER AND OPTIMIZATION TECHNIQUES (ICEECCOT), 2016, : 252 - 255
  • [47] A Web Application for a Cost-Effective Fine-Tuning of Open-Source LLMs in Education
    Diez-Rozas, Victor
    Estevez-Ayres, Iria
    Alario-Hoyos, Carlos
    Callejo, Patricia
    Delgado Kloos, Carlos
    [J]. ARTIFICIAL INTELLIGENCE IN EDUCATION: POSTERS AND LATE BREAKING RESULTS, WORKSHOPS AND TUTORIALS, INDUSTRY AND INNOVATION TRACKS, PRACTITIONERS, DOCTORAL CONSORTIUM AND BLUE SKY, AIED 2024, 2024, 2151 : 267 - 274
  • [48] Web Server Security on Open Source Environments
    Gkoutzelis, Dimitrios X.
    Sardis, Manolis S.
    [J]. NEXT GENERATION SOCIETY: TECHNOLOGICAL AND LEGAL ISSUES, 2010, 26 : 236 - +
  • [49] Assessing and Exploiting Web Applications with the Open-Source Samurai Web Testing Framework
    Siles, Raul
    [J]. WEB APPLICATION SECURITY, 2010, 72 : 13 - 13
  • [50] Security issues in information systems based on open-source technologies
    Greiner, S
    Boskovic, B
    Brest, J
    Zumer, V
    [J]. IEEE REGION 8 EUROCON 2003, VOL B, PROCEEDINGS: COMPUTER AS A TOOL, 2003, : 12 - 15