What are the three main detection methods used in cybersecurity tools?
What does signature-based detection rely on to identify threats?
What is a major limitation of signature-based detection?
What is baselining in the context of anomaly-based detection?
What is a potential risk of baselining if a network is already compromised during the baseline period?
What is a key advantage of anomaly-based detection over signature-based detection?
What is a drawback of anomaly-based detection?
What does hybrid detection combine?
What is alert fatigue?
A detection tool flags traffic that matches a known pattern associated with a specific type of malware. What type of detection method is being used?
A detection system identifies unusual traffic patterns that differ from normal and raises an alert. What type of detection is this?
A company uses a detection system that can identify both known and unknown threats but requires significant processing power and generates many alerts. What type of system is this?