But du cours
Design, deploy, and/or audit a security policy and document the work.
Acquis d'apprentissage visés
Managing the security of an information system
Prérequis
- Mathematics and cryptography instructor
- Cybersecurity specialist, particularly in regulatory aspects
- English instructor
Programme
A regional SME, IndOcéan Tech, specializing in the development of IoT solutions for the agricultural sector, is calling on your offensive security team. Following a preliminary audit, their CISO suspects that their infrastructure is vulnerable to ransomware attacks and silent data exfiltration. To test the robustness of their defenses (antivirus, EDR, firewall, IDS), they have commissioned you to simulate a realistic end-to-end attack in an isolated lab environment that faithfully reproduces their information system.
Modalités d'évaluation
Competence will be assessed based on the deliverables provided, using a criterion-based grid presented to engineering students in advance.
Bibliographie
- The commented source code of the developed malware (ransomware + exfiltration module), stored in a private Git repository.
- A comprehensive technical report including:
- Description of the malware architecture and technical choices
- Evasion techniques implemented and their justification
- Generated indicators of compromise (IoC)
- Limitations and recommended countermeasures
- A 20-minute oral presentation to a jury, with a live demonstration in a virtualized environment.
In addition to the technical aspects specified in the expected level description, the SAE will be assessed based on the following criteria:
- Compliance with national and international legal frameworks
- Continuous scientific and technological monitoring
- Communication with stakeholders, both written and oral, in French and English
- Continuous reduction of cyberattack risks and impacts
Supports
All documents used during teaching sessions. If necessary, additional documentary references may be consulted.