Are you an EPFL student looking for a semester project?
Work with us on data science and visualisation projects, and deploy your project as an app on top of Graph Search.
This lecture covers the importance of establishing a security policy, focusing on threat models, security principles, and practical exercises. It discusses the principles of economy of mechanism, fail-safe defaults, complete mediation, open design, and separation of privilege. The instructor presents a case study involving Swisscom phone lines being tapped by the NSA, analyzing the threat model, principals, assets, and security properties. Additionally, it explores exercises related to state-level adversaries and solo young hackers, emphasizing data confidentiality, integrity, availability, authenticity, and the prevention of unauthorized access and data modification.
This video is available exclusively on Mediaspace for a restricted audience. Please log in to MediaSpace to access it if you have the necessary permissions.
Watch on Mediaspace