Master of Cybersecurity

Education · graduate

A full-time graduate cohort built around two six-unit labs: first trained as a penetration tester, then as a defender of systems, networks and cloud, with a co-op in industry.

Trained as a penetration tester

Cybersecurity Lab I simulates real attacks on software systems: discover a vulnerability, exploit it, and decide what an attacker would gain. Out of it came a grey-box pentest of a staging web app with 14 validated findings, and a scanner that tests MCP servers before an AI agent may use them.

Then as a defender

Cybersecurity Lab II studies attacks on systems, networks and cloud infrastructure, and how to detect and prevent them. My team’s project, PwnScan, finds IoT devices on a network and ranks their CVEs by what is actually exploitable; it placed in the top 3.

Cryptography and the cloud underneath

Applied Cryptography produced CryptoLab, a client-side password vault: keys derived with scrypt, entries sealed with AES-256-GCM so tampered metadata fails to decrypt, an HMAC-chained audit log, and Shamir k-of-n recovery shares. Distributed and Cloud Systems produced a GFS-style vault on GCP, one master and three chunk servers across zones.