Most networks have a firewall designed to keep out hackers, viruses, worms, or other other malware. But once the malware gets through, another set of protocols needs to be in place to actually detect what the software is, or who is the intruder, and how to stop it dead in its tracks before it gets out of control. Intrusion detection systems have a variety of controls, offer a different set of schemes, and pursue the attack in different ways. Some are disabled, some are identified in a log file, some try to trace back the origin of the attack. The Brighthub guide to Intrusion detection explains these concepts and more.

Image: http://dcs.ics.forth.gr/Activities/Projects/ids.html
| Snort Review - Open Source Intrusion Detection and Prevention
You may be wondering about IDS and IPS, and which system has a proven track record, excellent performance and accuracy, and what will be around for the long term. If you haven't... |
What Is a Honeypot?
Hackers and crackers are constantly scanning and searching the networks on the Internet to find soft targets to exploit. The sheer volume of systems and large IP address space available... |
| Tips for Avoiding Breaches in Data Security
Breaches in data security are avoidable. Defense in depth is a key component in protecting the data of an organization. Perimeter security, internal security and training for all employees... |
The Top 5 Free Port Scanners
Port scanners are key tools for network and systems security professionals. Fortunately, the best of these are free and/or Open Source. This article examines and compares the top... |