1.

A false positive can be defined as ________(a) An alert that indicates nefarious activity on a system that, upon further inspection, turns out to represent legitimate network traffic or behavior(b) An alert that indicates nefarious activity on a system that is not running on the network(c) The lack of an alert for nefarious activity(d) Both An alert that indicates nefarious activity on a system that, upon further inspection, turns out to represent legitimate network traffic or behavior and An alert that indicates nefarious activity on a system that is not running on the networkI had been asked this question during an interview.I want to ask this question from Intrusion Detection Systems in portion Point to Point Protocol & Error Detection of Computer Network

Answer»

The CORRECT option is (d) Both An alert that indicates NEFARIOUS activity on a system that, UPON further inspection, turns out to represent LEGITIMATE network traffic or behavior and An alert that indicates nefarious activity on a system that is not running on the network

Best explanation: A FALSE positive is any alert that indicates nefarious activity on a system that, upon further inspection, turns out to represent legitimate network traffic or behavior.



Discussion

No Comment Found

Related InterviewSolutions