Skip to Content
Computer and Information Security Handbook, 2nd Edition
book

Computer and Information Security Handbook, 2nd Edition

by John R. Vacca
November 2012
Intermediate to advanced
1200 pages
78h 13m
English
Morgan Kaufmann
Content preview from Computer and Information Security Handbook, 2nd Edition
Chapter 3

Detecting System Intrusions

Almantas Kakareka, CISSP, GSNA, GSEC, CEH,    Demyo, Inc.

1 Introduction

First things first: Detecting system intrusion is not the same as Intrusion Detection System/Intrusion Prevention System (IDS/IPS). We want to detect system intrusion once attackers pass all defensive technologies in the company (such as IDS/IPS mentioned above), full-packet capture devices with analysts behind them, firewalls, physical security guards, and all other preventive technologies and techniques. Many preventative technologies are using blacklisting [1] most of the time, and thus that’s why they fail. Blacklisting is allowing everything by default and forbidding something that is considered to be malicious. So, for the attacker, ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.

Read now

Unlock full access

More than 5,000 organizations count on O’Reilly

AirBnbBlueOriginElectronic ArtsHomeDepotNasdaqRakutenTata Consultancy Services

QuotationMarkO’Reilly covers everything we've got, with content to help us build a world-class technology community, upgrade the capabilities and competencies of our teams, and improve overall team performance as well as their engagement.
Julian F.
Head of Cybersecurity
QuotationMarkI wanted to learn C and C++, but it didn't click for me until I picked up an O'Reilly book. When I went on the O’Reilly platform, I was astonished to find all the books there, plus live events and sandboxes so you could play around with the technology.
Addison B.
Field Engineer
QuotationMarkI’ve been on the O’Reilly platform for more than eight years. I use a couple of learning platforms, but I'm on O'Reilly more than anybody else. When you're there, you start learning. I'm never disappointed.
Amir M.
Data Platform Tech Lead
QuotationMarkI'm always learning. So when I got on to O'Reilly, I was like a kid in a candy store. There are playlists. There are answers. There's on-demand training. It's worth its weight in gold, in terms of what it allows me to do.
Mark W.
Embedded Software Engineer

You might also like

Computer and Information Security Handbook, 3rd Edition

Computer and Information Security Handbook, 3rd Edition

John R. Vacca
Computer Security Handbook, Fifth Edition

Computer Security Handbook, Fifth Edition

SEYMOUR BOSWORTH, ERIC WHYNE, M.E. KABAY

Publisher Resources

ISBN: 9780123943972