Schedule
Empirical Security & Privacy, for Humans
By Mike Hicks
October 23, 2025
Jump to next class.
| Date | Topic / Speaker | Readings & handouts |
|---|---|---|
| Aug 26 | Introduction and syllabus |
|
| Aug 28 | Economic view of cybersecurity - Alex Gantman, VP Security Engineering, Qualcomm |
|
| Sep 2 | End users and cybersecurity |
|
| Sep 4 | Cybersecurity as a scientific pursuit - Cormac Herley, Principal Researcher, Microsoft |
|
| Sep 9 | Cybersecurity and risk assessment |
|
| Sep 11 | Passwords |
|
| Sep 16 | The business of attacks, and paying attackers for defense |
|
| Sep 18 | LLMs and their impact on cyberattacks |
|
| Sep 23 | Measuring secure software development practices |
|
| Sep 25 | Project pitches | Individual students, or groups who wish to work together, should prepare project pitches. See the syllabus for details. |
| Sep 30 | Empirical evaluations: Fuzz testing |
|
| Oct 2 | Statistical tests: Pitfalls |
|
| Oct 7 | Threat modeling - Adam Shostack, Shostack Associates |
|
| Oct 9 | Fall break, no class | Project proposals due. See the syllabus for details. |
| Oct 14 | Password managers, ethics of human studies |
|
| Oct 16 | What’s Still Missing in Static Analysis? A Decade-Long Journey - Mayur Naik, Prof of CIS @ UPenn | Guest lecture about static analysis technology (including for finding security bugs), the influence of LLMs on it, and how we measure progress.
|
| Oct 21 | Building Security in Maturity Model (BSIMM) |
|
| Oct 23 | Economic investment in cybersecurity |
|
| Oct 28 | Usability: Privacy & Passwords |
|
| Oct 30 | Student: Noopur Bhatt | |
| Nov 4 | Student: Jiayi Xin | |
| Nov 6 | Student: Bharath Namboothiry | |
| Nov 11 | Students: Davis Brown and Thia Richey | |
| Nov 13 | Student: Lucia Kulzer | |
| Nov 18 | Student: Ali Shirzad | |
| Nov 20 | Student: Zhiyao Tang | |
| Nov 25 | TG week: No class | |
| Nov 27 | TG week: No class | |
| Dec 2 | Final project presentations | |
| Dec 4 | Final project presentations |
- Posted on:
- October 23, 2025
- Length:
- 5 minute read, 1064 words
- See Also: