ESIROI · Maquettes Connexion
AccueilITS8 · UE8-CYBER
ESI-SPI-CI-IN4-S8-UE4-EC2

Cybersecurity SAE

FR EN ⬇ PDF
RéférentTahiry RAZAFINDRALAMBO
ECTS1
CM / TD / TP4 / 0 / 2
Typesae

Viable
Viable100%
Complète93%
Manque pour « complète »
  • Version EN relue

But du cours

Design, deploy, and/or audit a security policy and document the work.

Acquis d'apprentissage visés

Managing the security of an information system

Prérequis

  • Mathematics and cryptography instructor
  • Cybersecurity specialist, particularly in regulatory aspects
  • English instructor

Programme

A regional SME, IndOcéan Tech, specializing in the development of IoT solutions for the agricultural sector, is calling on your offensive security team. Following a preliminary audit, their CISO suspects that their infrastructure is vulnerable to ransomware attacks and silent data exfiltration. To test the robustness of their defenses (antivirus, EDR, firewall, IDS), they have commissioned you to simulate a realistic end-to-end attack in an isolated lab environment that faithfully reproduces their information system.

Modalités d'évaluation

Competence will be assessed based on the deliverables provided, using a criterion-based grid presented to engineering students in advance.

Bibliographie

  • The commented source code of the developed malware (ransomware + exfiltration module), stored in a private Git repository.
  • A comprehensive technical report including:
  • Description of the malware architecture and technical choices
  • Evasion techniques implemented and their justification
  • Generated indicators of compromise (IoC)
  • Limitations and recommended countermeasures
  • A 20-minute oral presentation to a jury, with a live demonstration in a virtualized environment.

In addition to the technical aspects specified in the expected level description, the SAE will be assessed based on the following criteria:

  • Compliance with national and international legal frameworks
  • Continuous scientific and technological monitoring
  • Communication with stakeholders, both written and oral, in French and English
  • Continuous reduction of cyberattack risks and impacts

Supports

All documents used during teaching sessions. If necessary, additional documentary references may be consulted.