Please be advised: Due to maintenance at the TU locking system iintegration some errors in this area may occur.. Please accept our apologies for any inconvenience.

192.112 Systems and Applications Security
This course is in all assigned curricula part of the STEOP.
This course is in at least 1 assigned curriculum part of the STEOP.

2021W, VU, 4.0h, 6.0EC


  • Semester hours: 4.0
  • Credits: 6.0
  • Type: VU Lecture and Exercise
  • Format: Distance Learning

Learning outcomes

After successful completion of the course, students are able to understand common errors and security vulnerabilities as well as to deploy ways to detect and avoid them. Students are further able to conduct planning, testing and development of secure software applications. They gain a deeper understanding about the root causes of those errors and vulnerabilities by exploiting them themselves in a controlled environment, as well as apply principles of secure programming in practical examples. As a result, students are able to actively avoid these vulnerabilities and implement appropriate security measures in security relevant projects.

Subject of course

The lecture deals with common errors and vulnerabilities across OS and application layers as well as ways to detect and avoid them. Examples are used to highlight the general error classes and how they can be abused. Furthermore, software security testing techniques and binary analysis techniques are presented to detect vulnerabilities in applications and protocols and secure the development process.

In order to teach the subject in the most authentic way, the lecture uses a mostly "offensive approach": Security-related topics are viewed from an attacker's perspective and possible attack scenarios are shown. In practical challenges the students need to exploit previously discussed security vulnerabilities inside a controlled challenge-environment. This improves the students' understanding of the handled topics and helps them to prevent similar mistakes in own projects and allows them to actively take security measures when handling security relevant projects.

Please note that this course substitutes the two previous courses Advanced Internet Security as well as Software Security. In case you already finished both of these courses, you can not use Systems- and Application-Security for your degree.


Teaching methods

  • Lectures with slides and live demonstrations
  • Live online discussions of course topics
  • Accompanying challenges as homework assignments

Mode of examination


Additional information

ECTS Breakdown (6 ECTS = 150 hours)

Lectures (20h)
Online Discussions, Self-studies (38h)
Challenges (90h)
Exam (2h)



Course dates

Tue10:00 - 11:0005.10.2021 (LIVE)Overview of the security courses offered at TU Wien (optional)
Thu15:00 - 16:0014.10.2021 (LIVE)Introductory Meeting
Thu15:00 - 17:0021.10.2021 - 20.01.2022 UPDATE (LIVE)Online Lecture
Thu15:00 - 17:0002.12.2021 Online via TUWEL (LIVE)Exam for First Part
Thu15:00 - 17:0027.01.2022 Online via TUWEL (LIVE)Exam for Second Part
Systems and Applications Security - Single appointments
Tue05.10.202110:00 - 11:00 of the security courses offered at TU Wien (optional)
Thu14.10.202115:00 - 16:00 Meeting
Thu21.10.202115:00 - 17:00 UPDATE Lecture
Thu28.10.202115:00 - 17:00 UPDATE Lecture
Thu11.11.202115:00 - 17:00 UPDATE Lecture
Thu25.11.202115:00 - 17:00 UPDATE Lecture
Thu02.12.202115:00 - 17:00 Online via TUWELExam for First Part
Thu09.12.202115:00 - 17:00 UPDATE Lecture
Thu16.12.202115:00 - 17:00 UPDATE Lecture
Thu13.01.202215:00 - 17:00 UPDATE Lecture
Thu20.01.202215:00 - 17:00 UPDATE Lecture
Thu27.01.202215:00 - 17:00 Online via TUWELExam for Second Part

Examination modalities

Written exam and practical exercises (challenges).


Course registration

Begin End Deregistration end
26.09.2021 00:00 28.10.2021 23:59 28.10.2021 23:59



No lecture notes are available.

Previous knowledge

Programming experience in C/C++ and/or Python would be helpful. 


Preceding courses