|
所在平台: Coursera |
课程主页: https://www.coursera.org/learn/security-and-privacy-in-tor-network
课程评论:没有评论
课程名称:TOR网络的安全与隐私 课程概述:本MOOC课程旨在学习TOR的基本概念,以及如何保护用户的安全和隐私,抵御网络审查。我们将探讨TOR如何实现匿名性,并通过下载和使用Tor浏览器软件来利用其服务。课程将分析针对TOR应用流量控制的近期攻击——狙击手攻击。此外,我们还将介绍TOR提供的隐秘服务及其去匿名化的方式。学员将学习如何在AWS实例上设置隐秘服务器以提供网络服务,并掌握提供隐秘服务的最佳实践和操作安全。课程内容还包括如何使用Tor电路管理隐秘服务器,并配置Web服务器以避免泄露软件版本信息。同时,我们还将讨论如何防御这些攻击。为了提升TOR的性能,我们将探讨基于云的TOR及其实现。 课程结束时,学员将能够利用TOR浏览器保护个人隐私,设置隐秘服务以保护服务器并实现匿名上网,同时在选择入口守卫时需谨慎,以防对手通过DDoS流量攻击强迫选择他们的中继作为入口和出口路由器。课程还将介绍审查系统及其抵抗机制的基本组成部分、部署方案及其攻击方式。 课程大纲: 1. **洋葱路由(TOR)**: - 学习TOR网络的基本概念及其保护用户隐私的方法,使用Tor浏览器访问网站以保持匿名,如何更改TOR电路的入口守卫和出口节点,学习在Linux机器上安装Tor软件包并启动服务,使用torify运行网络命令(如ssh或curl),通过TOR电路作为出站连接。 2. **TOR上的隐秘服务及其攻击**: - 理解隐秘服务架构和协议的工作原理,如何为TOR网络设置隐秘服务器提供网络服务而不暴露公共IP地址,学习匿名管理隐秘服务器的最佳实践,并隐藏Web服务器、操作系统和已安装软件包的版本信息。 3. **审查系统**: - 了解审查系统的基本组成部分、审查者模型及相关挑战,定义审查者的影响范围和可见领域,以及这些因素对审查系统的技术部署的影响。描述审查者攻击模型的基本组成部分,解释不同的指纹识别方法及其优缺点,研究不同的直接审查方法及其限制。 4. **审查抵抗系统(CRS)**: - 学习审查抵抗系统的两个主要功能组件,解释建立CRS通信的步骤,理解建立CRS通信的操作要求,掌握隐藏信息和避免跟踪的技术,了解CRS的基本特性及其目的。获取CRS凭证并降低伪造/testing的风险,部署不同的抗主动探测方案,识别建立用户信任的方案,实施规避审查检测和阻止的方法,保护发布者信息的方法,以及当前开放和活跃的CRS研究领域。
Name:The Onion Routing (TOR)
Description:In this module, we learn the basic concepts of Tor network for protecting the privacy of Tor users and how to use the Tor browser features to access the web sites while preserving the anonimity, change the entry guard and exit node of the Tor circuit, learn how to setup Tor software package on a Linux machine and start its service, and use torify to run network commands, such as ssh or curl command, but use a Tor circuit as an outgoing connection
Name:Hidden Service on TOR and their Attacks
Description:In this module, we learn how the hidden service architecture and protocol work, and how to set up the hidden server to provide network services on the Tor network without revealing the public IP address. We also learn the best practice of managing the hidden server anonymously and hide the version information of web server, OS, and installed software packages.
Name:Censorship Systems
Description:In this module we learn the basic components of the censorship systems, the censor model and the related challenges. We learn to define the censor's sphere of influence and sphere of visibility, and their impact on the techniques that can be deployed by the censorship systems. We will be able to describe the basic components of the censor's attack model, explain different fingerprinting methods and evaluating their strength and weakness. We will study different direct censorship method and learn the limitations imposed upon the range of censorship actions.
Name:Censorship Resistance System (CRS)
Description:In this module, we will learn the two main functional components of censorship resistance system (CRS) and explain the steps to establish the CRS communications. We will understand the operating requirements for establishing the CRS communications and learn the techniques for hiding information and avoid tracking using CRS channels. We will learn the basic CRS properties shared by CRS' and their purposes. We will comprehend different methods for obtaining CRS credentials and reduce faking/testing of them. We will be able to deploy different schemes for resisting active probing, identify different schemes to establish user trust. We will learn how to implement methods for evading censor detection and blocking. We will understand various methods for protecting publisher information and current open and active CRS research areas.
In this MOOC, we will learn about TOR basic concept and see how they protect the security and privacy of users and resist censorship. We will examine how TOR realize the anonymity and utilize its service by downloading and using Tor browser software. A recent attack on TOR’s application flow control called sniper attacks is analyzed. We introduce the hidden service provided by TOR and show how it can be denonymized. We will learn how to setup a hidden server to provide web service on AWS instance. We will also learn the best practices and operational security in providing the hidden services. We will learn how to manage the hidden server using Tor circuit and configure the web server not to reveal the software version information. We also show how it can be defended. To improve TOR’s performance, we discuss the cloud based TOR and their implementation. By the end of this course, you should be able to utilize TOR browser to protect your privacy, set up hidden service on current interface that protect your servers and make it anonymous, you will choosing entry guards wisely since your adversary will try to attack them with DDoS traffic and force you to choose their relay as your entry and exit router. We will also learn the basic components of both censorship and censorship resistance systems, and the scheme deployed by these systems and their attacks.