Computer Systems Security

  • Free
  • No certificate
Provider
MIT
Cost
Free
Certificate
No certificate
Format
Self-paced
Language
English
Subjects
Cyber Security, Computer Science
Source
MIT Open Learning
Last verified
14 Sep 2026

6.858 Computer Systems Security is a graduate course from MIT's Department of Electrical Engineering and Computer Science, taught by Nickolai Zeldovich in fall 2014 and published on OpenCourseWare with recorded lectures. It is about the design and implementation of secure computer systems; lectures cover threat models, attacks that compromise security, and techniques for achieving security, drawing on recent research papers. Topics include operating system security, capabilities, information flow control, language security, network protocols, hardware security and web application security. The lecture videos start with threat models, control hijacking and buffer overflow exploits and defences, then privilege separation, capabilities and sandboxing native code. A web block covers the web security model, securing web applications, symbolic execution and Ur/Web.

Network lectures deal with network security, protocols, and SSL and HTTPS, followed by medical software, side-channel attacks, user authentication, private browsing, anonymous communication, mobile phone security, data tracking and a guest lecture from MIT's IT department. The site provides lecture notes, readings, lab assignments, exams with solutions, a final project description and related resources. Everything is free under a Creative Commons licence, with no account and no certificate. The material assumes systems programming experience; it is a research-paper-driven graduate class, not a certification prep course.

Advertisement

What you’ll learn

  • Build threat models and understand control hijacking and buffer overflow attacks and defences
  • Apply privilege separation, capabilities and sandboxing
  • Reason about the web security model and how to secure web applications
  • Understand network security, protocols, SSL and HTTPS
  • Recognise side-channel attacks, authentication issues and privacy threats such as tracking
  • Assess security in mobile phones, medical software and anonymous communication

Who it’s for

Developers and computer science students with systems programming background who want a deep, paper-based treatment of security; not suited to beginners or those seeking a credential.

Source: MIT Open Learning (opens in a new tab) · Verified · Report a change

Advertisement
FreeOpens ocw.mit.edu Go to course (opens in a new tab)