From the course: Advanced Intrusion Detection by Infosec

Unlock this course with a free trial

Join today to access over 25,500 courses taught by industry experts.

Anomaly detection overview

Anomaly detection overview

- [Instructor] Welcome back to advanced intrusion detection. My name is Mark Viglione, and in this course, we're going to be talking about anomaly-based detection. So, we just in course three, we talked a little bit about how to set up and understand how to build a lab to build various detections. And we talked about technology such as Security Onion and how to install it on a virtual box. And we talked a little bit about interior detection system rules. We dived into Suricata a bit, as well as Azure for your host based IDS. And in this section, we're going to a little bit more of theory behind anomaly based detection. We're going to give an overview of what it is and how it differs from some of the signature detection that we've talked about previously in this detection path. And we're going to learn a little bit more about and understand it, kind of how you can build models for anomaly detect, because it is a more complicated topic. And we're going to talk a little bit about some…

Contents