DSC8059 : Offensive Security and Ethical Hacking (Inactive)
- Inactive for Year: 2026/27
- Module Leader(s): Dr Essam Ghadafi
- Owning School: Computing
- Teaching Location: Âé¶¹´«Ã½ City Campus
Semesters
Your programme is made up of credits, the total differs on programme to programme.
| Semester 2 Credit Value: | 20 |
| ECTS Credits: | 10.0 |
| European Credit Transfer System | |
Aims
The module develops knowledge and practical skills in identifying, analysing and exploiting vulnerabilities in digital systems using offensive security and ethical hacking approaches. It introduces structured penetration testing methodologies and supports the application of tools and techniques in controlled environments, enabling evaluation of system weaknesses and appropriate mitigation strategies.
Outline Of Syllabus
- Principles of offensive security and ethical hacking, including legal and ethical considerations
- Penetration testing methodologies, including reconnaissance, scanning and enumeration
- Vulnerability assessment techniques and tools
- Network security testing, including traffic analysis and common attack techniques
- Web application vulnerabilities and exploitation approaches
- System-level vulnerabilities and privilege escalation
- Introduction to advanced offensive techniques, including evasion and basic malware concepts
- Security testing, reporting, and communication of findings
Teaching Methods
Teaching Activities
| Category | Activity | Number | Length | Student Hours | Comment |
|---|---|---|---|---|---|
| Scheduled Learning And Teaching Activities | Lecture | 8 | 2:00 | 16:00 | Lectures |
| Guided Independent Study | Assessment preparation and completion | 1 | 35:00 | 35:00 | Preparation and completion of Coursework 2 |
| Guided Independent Study | Assessment preparation and completion | 1 | 20:00 | 20:00 | Preparation and completion of Coursework 1 |
| Structured Guided Learning | Lecture materials | 1 | 20:00 | 20:00 | Review of lecture materials and supporting content |
| Guided Independent Study | Assessment preparation and completion | 1 | 5:00 | 5:00 | Formative feedback and feed-forward activities linked to Coursework 1 and Coursework 2 |
| Guided Independent Study | Directed research and reading | 1 | 16:00 | 16:00 | Background reading and exploration |
| Scheduled Learning And Teaching Activities | Practical | 8 | 2:00 | 16:00 | Hands-on labs including vulnerability assessment and penetration testing |
| Structured Guided Learning | Structured research and reading activities | 1 | 24:00 | 24:00 | Directed reading linked to weekly topics |
| Scheduled Learning And Teaching Activities | Small group teaching | 2 | 2:00 | 4:00 | Case studies, discussions, and critical evaluation |
| Guided Independent Study | Independent study | 40 | 1:00 | 40:00 | Practice and consolidation of practical skills |
| Scheduled Learning And Teaching Activities | Scheduled on-line contact time | 4 | 1:00 | 4:00 | Q&A, feedback sessions |
| Total | 200:00 |
Teaching Rationale And Relationship
Lectures introduce key principles of offensive security, providing the foundation for practical work.
Practical sessions are central to the module, enabling students to apply tools and techniques in controlled environments and develop hands-on skills in vulnerability assessment and penetration testing.
Small group teaching supports discussion and critical evaluation of case studies, while structured guided learning supports engagement with key concepts and current practices.
Guided independent study enables students to consolidate their learning, further develop practical skills, and prepare for assessment.
Taken together, these methods provide a balanced approach that supports both technical competence and critical evaluation in offensive security.
Assessment Methods
The format of resits will be determined by the Board of Examiners
Other Assessment
| Description | Semester | When Set | Percentage | Comment |
|---|---|---|---|---|
| Report | 2 | M | 40 | Vulnerability assessment report based on a defined system environment, including identification and analysis of vulnerabilities (1500 words) |
| Portfolio | 2 | M | 60 | Penetration testing portfolio including practical investigation, documented evidence, vulnerability analysis, and critical justification of findings and security recommendations (2500-word equivalent). |
Formative Assessments
Formative Assessment is an assessment which develops your skills in being assessed, allows for you to receive feedback, and prepares you for being assessed. However, it does not count to your final mark.
| Description | Semester | When Set | Comment |
|---|---|---|---|
| Portfolio | 2 | M | Feedback from first assessment supports development of the practical investigation and reporting elements for 2nd assessment |
Assessment Rationale And Relationship
The assessment strategy is designed to evaluate both analytical understanding and practical skills in offensive security. The first assessment focuses on vulnerability assessment, requiring students to analyse a defined system environment and identify security weaknesses. This supports the development of core analytical skills and the application of security principles. It also provides a formative element to support students with the second assessment.
The second assessment builds on this through a penetration testing project, requiring students to apply techniques in a controlled scenario and produce a professional portfolio of findings and supporting evidence. This supports the development of practical competence, as well as the ability to analyse results, justify technical decisions, and communicate findings effectively.
Taken together, the assessments provide a balanced approach, enabling students to demonstrate both understanding and application.
Reading Lists
Timetable
- Timetable Website: