303-300 · Question #99
What is host intrusion detection (HID)?
The correct answer is B. A system that monitors and detects potential security threats on a single computer or server. B is correct because Host Intrusion Detection (HID) operates at the individual host level - a single computer or server - monitoring system activity, logs, file integrity, and processes to detect suspicious behavior or policy violations. A is wrong because monitoring network…
Question
What is host intrusion detection (HID)?
Options
- AA system that detects malicious traffic on a network
- BA system that monitors and detects potential security threats on a single computer or server
- CA system that prevents malware from infecting a network
- DA system that scans files and folders for viruses
How the community answered
(67 responses)- A1% (1)
- B94% (63)
- C3% (2)
- D1% (1)
Explanation
B is correct because Host Intrusion Detection (HID) operates at the individual host level - a single computer or server - monitoring system activity, logs, file integrity, and processes to detect suspicious behavior or policy violations.
- A is wrong because monitoring network traffic is the job of a Network Intrusion Detection System (NIDS), not a host-based one.
- C is wrong because prevention (blocking threats) describes an Intrusion Prevention System (IPS) or firewall - detection systems observe and alert, they don't actively stop.
- D is wrong because scanning files for viruses describes antivirus software, which is a narrower, reactive tool compared to the broader behavioral monitoring HIDS performs.
Memory tip: Think "HID = Host Is Detective" - it watches what's happening on the machine itself and reports suspicious activity, like a detective taking notes rather than a guard blocking the door.
Topics
Community Discussion
No community discussion yet for this question.