Advanced Network Security and Analysis
Keep adding new skills with 10,000+ programs for $239 (usually $399). Save now.
Advanced Network Security and Analysis
This course is part of Information Assurance Analysis Specialization
Instructor: Jason Crossland
Included with
Learn more
Ask Coursera
Recommended experience
Recommended experience
What you'll learn
Understand anonymization methods, challenges, and legal considerations for ensuring data privacy in network traffic.
Recognize security threats in mobile applications, including risks from APIs and cloud-based services, and explore best practices for defense.
Analyze DNS, HTTP, and SMTP protocols to identify abnormal traffic patterns, enhancing the ability to detect potential cyber threats.
Capture and interpret TCP sessions to identify attack methods like sequence number spoofing and TCP scanning, using tools like TCPDump and Wireshark.
Skills you'll gain
Tools you'll learn
Details to know
18 assignments
See how employees at top companies are mastering in-demand skills
Build your subject-matter expertise
- Learn new concepts from industry experts
- Gain a foundational understanding of a subject or tool
- Develop job-relevant skills with hands-on projects
- Earn a shareable career certificate
There are 7 modules in this course
The course "Advanced Network Security and Analysis" dives into the essential skills needed to protect and analyze complex network environments. This course covers advanced topics like anonymization techniques, mobile application security, and in-depth analysis of DNS, HTTP, SMTP, and TCP protocols. Learners will gain practical experience in recognizing vulnerabilities and analyzing network traffic to detect potential threats. Each module offers hands-on insights into industry-standard tools and techniques, equipping students to address real-world security challenges confidently.
Uniquely focused on practical application, the course empowers students to work with tools like Splunk, TCPDump, and Wireshark, ensuring they can navigate and mitigate complex network security scenarios. Through interactive content, learners will gain a comprehensive understanding of network protocols, explore the mechanics of cyber-attacks, and learn how to implement effective defenses. By the end of the course, students will have developed an advanced toolkit for safeguarding modern network infrastructures, making them valuable assets in any IT security environment.
Throughout this course, we will explore key anonymization techniques and the associated challenges, including legal implications. You'll learn about various mechanisms for user anonymity, such as onion routing and DHTs, and uncover methods of deanonymization. Weβll also dive into cybersecurity threats, including ransomware and Bluetooth vulnerabilities, while discussing mobile application security in the context of BYOD policies. Finally, we'll cover DNS fundamentals, TCP/IP protocols, and hands-on analysis with tools like Wireshark.
What's included
1 video2 readings
1 videoβ’Total 4 minutes
- Specialization Introduction Video: Information Assurance Analysisβ’4 minutes
2 readingsβ’Total 12 minutes
- Course Overviewβ’7 minutes
- Instructor Biography - Prof. Jason Crosslandβ’5 minutes
In this module, we discuss techniques for anonymizing and deanonymizing network traffic data. Anonymization is the process of removing information that can be used to identify a user and may be done as a post-processing effort, or by using systems that hide the userβs identity during normal operations. Anonymity has been a major concern in network security for the past thirty years, with an especially active interest in the last decade with the rise and fall of Napster and other peer-to-peer applications.
What's included
4 videos4 readings3 assignments2 plugins
4 videosβ’Total 38 minutes
- Formal Models of Anonymityβ’9 minutes
- Mixes and DHTsβ’14 minutes
- Anonymity is Hardβ’6 minutes
- Deanonymizing Trafficβ’8 minutes
4 readingsβ’Total 300 minutes
- Anonymization: Definition, Types, & Benefitsβ’60 minutes
- Google's FLoC Article Related to Anonymizationβ’20 minutes
- Reading Referencesβ’180 minutes
- Self-Reflective Reading: Anonymizing Network Dataβ’40 minutes
3 assignmentsβ’Total 90 minutes
- Anonymizationβ’60 minutes
- Anonymity in Digital Communication: Models and Mechanismsβ’15 minutes
- Challenges of Anonymity: Understanding Threats and Countermeasuresβ’15 minutes
2 pluginsβ’Total 26 minutes
- Video: Anonymization and Pseudonymization: Exploring Data Privacy Techniquesβ’16 minutes
- Video: The Anonymization Problem - Computerphileβ’10 minutes
In this module, we will discuss and be introduced to various risks, threats, and attack vectors/surfaces for mobile platforms and devices. We will learn how DoS attacks on IEEE 802.11 protocols occur, gain a better understanding of WEP, WPA, and WPA2, and learn about the overall security issues surrounding mobile platforms. Students will discuss different pieces of legislation being considered to protect mobile application users & personal data privacy laws. Mobile application & cloud-based scanning tools, as well as OWASP mobile and application program interface vulnerabilities will be studied.
What's included
5 readings3 assignments4 plugins
5 readingsβ’Total 445 minutes
- Reading Referencesβ’180 minutes
- DoS Attacksβ’15 minutes
- Reading Referencesβ’180 minutes
- Additional Notes about Wireless Protocolsβ’30 minutes
- Self-Reflective Reading: Data Privacy and Network Securityβ’40 minutes
3 assignmentsβ’Total 90 minutes
- Mobile Application Securityβ’60 minutes
- Mobile Application Security Essentialsβ’15 minutes
- Mobile Application Security Concernsβ’15 minutes
4 pluginsβ’Total 107 minutes
- Video: Lecture 6Aβ’20 minutes
- Video: Lecture 6Bβ’27 minutes
- Video: Application Securityβ’16 minutes
- Video: Why Mobile App Security Should Concern Developersβ’44 minutes
In this module, we will discuss the use of DNS, one of the Internetβs most important protocols. DNS is the protocol that translates domain names into IP addresses, but more importantly in the modern internet, it is used to hide the multiplexing and geolocation mechanisms that are used to enhance internet performance. Due to its centrality to network traffic, DNS is one of the most hacked and modified protocols in active use, and the way that it is used both by legitimate and illegitimate uses is critical for understanding modern Internet security.
What's included
5 videos6 readings3 assignments
5 videosβ’Total 78 minutes
- DNS Overviewβ’19 minutes
- Records and DNS Lookupβ’15 minutes
- Investigating an Addressβ’14 minutes
- DNS Infrastructureβ’11 minutes
- DNS Hackingβ’20 minutes
6 readingsβ’Total 500 minutes
- Reading Referencesβ’120 minutes
- DNS Attacks Part 1β’40 minutes
- Reading Referencesβ’120 minutes
- DNS Attacks Part 2β’150 minutes
- Protective DNS (PDNS) Paper, Facts & Countermeasureβ’30 minutes
- Self-Reflective Reading: Understanding DNS Server Usage and Performanceβ’40 minutes
3 assignmentsβ’Total 90 minutes
- DNS Analysisβ’60 minutes
- Demystifying DNS: Fundamentals and Investigative Techniquesβ’15 minutes
- Exploring DNS: Infrastructure, Security, and Vulnerabilitiesβ’15 minutes
This module covers the evolution of the HTTP protocol and clarifies the distinctions between HTTP, HTML, and the web. It includes an overview of common log formats such as CLF and ELF, and practical configuration of Apache and IIS for log file generation. Students will delve into log collection and analysis tools, particularly Splunk, and learn about iframe exploitation, sandbox countermeasures against clickjacking, and frame-busting techniques along with HTTP headers rulesets.
What's included
5 videos5 readings3 assignments1 ungraded lab
5 videosβ’Total 44 minutes
- HTTP Intro and Historyβ’8 minutes
- Breaking Down HTTP Headersβ’11 minutes
- HTTP Loggingβ’6 minutes
- Search Enginesβ’13 minutes
- Search Engine Abusesβ’7 minutes
5 readingsβ’Total 360 minutes
- Reading Referencesβ’120 minutes
- HTTP Assignment, Splunk Guidanceβ’60 minutes
- Reading Referencesβ’120 minutes
- HTTP protocol & Clickjackingβ’20 minutes
- Self-Reflective Reading: Exploring DNS-over-HTTPS and DNS-over-TLSβ’40 minutes
3 assignmentsβ’Total 90 minutes
- HTTP Analysisβ’60 minutes
- HTTP Essentials: History, Headers, and Logging Insightsβ’15 minutes
- Search Engines: Functionality and Ethical Challengesβ’15 minutes
1 ungraded labβ’Total 60 minutes
- Technical Assignment: HTTP Log Analysis for Bot Activity and Security Threat Detection Using Python and Pandasβ’60 minutes
This module explores the journey of digital messages from origin to destination, highlighting the functions of DNS, SMTP, and POP/IMAP. It covers the role of priority in DNS MX records, how spammers exploit SMTP, and the use of Network Time Protocol (NTP). Students will also delve into various filtering techniques and data analysis tools.
What's included
5 videos3 readings3 assignments
5 videosβ’Total 50 minutes
- Overview of SMTPβ’12 minutes
- SPAMβ’7 minutes
- The Spammer's Perspectiveβ’12 minutes
- Anti-Spam Arms Raceβ’10 minutes
- SPAM Beyond SMTPβ’8 minutes
3 readingsβ’Total 180 minutes
- Reading Referencesβ’70 minutes
- Reading Referencesβ’70 minutes
- Self-Reflective Reading: Exploring Email Security and Spam Detectionβ’40 minutes
3 assignmentsβ’Total 90 minutes
- SMTP Analysisβ’60 minutes
- SMTP Unpacked: Understanding Email, SPAM, and the Spammer's Mindsetβ’15 minutes
- Navigating SPAM: The Arms Race and Beyond SMTPβ’15 minutes
This module covers the fundamentals of TCP state transitions, including predicting state changes based on incoming packets. Students will explore the TCP sequence numbering mechanism, the role of MTU, Ethernet, and lower-level protocols, and understand TCP addressing and session concepts. The course includes practical experience capturing sessions with TCPDump, distinguishing between promiscuous and normal modes, and analyzing traffic using TCPDump or Wireshark. Additionally, students will study common TCP attacks such as sequence number spoofing, Christmas tree packets, and TCP scanning.
What's included
8 videos3 readings3 assignments1 ungraded lab
8 videosβ’Total 129 minutes
- TCP/IP Analysis I: Layeringβ’22 minutes
- TCP/IP Analysis II: The IP Suiteβ’20 minutes
- TCP/IP Analysis III: ICMP and UDPβ’14 minutes
- TCP/IP Analysis IV: Intro to TCPβ’13 minutes
- TCP/IP Analysis V: IP Abuseβ’19 minutes
- TCP/IP Analysis VI: IPv6β’13 minutes
- Enclave Collection Toolsβ’15 minutes
- Router Collection Toolsβ’14 minutes
3 readingsβ’Total 280 minutes
- Reading Referencesβ’120 minutes
- Reading Referencesβ’120 minutes
- Self-Reflective Reading: Understanding TCP/IP Protocol Attacksβ’40 minutes
3 assignmentsβ’Total 90 minutes
- TCP Analysisβ’60 minutes
- In-Depth TCP/IP Analysis: Fundamentals to Advancedβ’15 minutes
- Advanced TCP/IP Analysis and Collection Toolsβ’15 minutes
1 ungraded labβ’Total 60 minutes
- Technical Assignment: Wireshark Network Traffic Capture and Analysis Lab β’60 minutes
Earn a career certificate
Add this credential to your LinkedIn profile, resume, or CV. Share it on social media and in your performance review.
Instructor
Offered by
Explore more from Security
- J
Johns Hopkins University
Course
- J
Johns Hopkins University
Course
Why people choose Coursera for their career
Frequently asked questions
To access the course materials, assignments and to earn a Certificate, you will need to purchase the Certificate experience when you enroll in a course. You can try a Free Trial instead, or apply for Financial Aid. The course may offer 'Full Course, No Certificate' instead. This option lets you see all course materials, submit required assessments, and get a final grade. This also means that you will not be able to purchase a Certificate experience.
When you enroll in the course, you get access to all of the courses in the Specialization, and you earn a certificate when you complete the work. Your electronic Certificate will be added to your Accomplishments page - from there, you can print your Certificate or add it to your LinkedIn profile.
Yes. In select learning programs, you can apply for financial aid or a scholarship if you canβt afford the enrollment fee. If fin aid or scholarship is available for your learning program selection, youβll find a link to apply on the description page.
More questions
Financial aid available,
