SSCP · Question #952
Which of the following is a disadvantage of a statistical anomaly-based intrusion detection system?
The correct answer is B. it may falsely detect a non-attack event that had caused a momentary anomaly in the. Some disadvantages of a statistical anomaly-based ID are that it will not detect an attack that does not significantly change the system operating characteristics, or it may falsely detect a non- attack event that had caused a momentary anomaly in the system.
Question
Which of the following is a disadvantage of a statistical anomaly-based intrusion detection system?
Options
- Ait may truly detect a non-attack event that had caused a momentary anomaly in the system.
- Bit may falsely detect a non-attack event that had caused a momentary anomaly in the
- Cit may correctly detect a non-attack event that had caused a momentary anomaly in the
- Dit may loosely detect a non-attack event that had caused a momentary anomaly in the
How the community answered
(16 responses)- A6% (1)
- B88% (14)
- D6% (1)
Explanation
Some disadvantages of a statistical anomaly-based ID are that it will not detect an attack that does not significantly change the system operating characteristics, or it may falsely detect a non- attack event that had caused a momentary anomaly in the system.
Topics
Community Discussion
No community discussion yet for this question.