ExamGecko
Question list
Search
Search

Related questions











Question 191 - 200-201 discussion

Report
Export

What is a difference between signature-based and behavior-based detection?

A.

Signature-based identifies behaviors that may be linked to attacks, while behavior-based has a predefined set of rules to match before an alert.

Answers
A.

Signature-based identifies behaviors that may be linked to attacks, while behavior-based has a predefined set of rules to match before an alert.

B.

Behavior-based identifies behaviors that may be linked to attacks, while signature-based has a predefined set of rules to match before an alert.

Answers
B.

Behavior-based identifies behaviors that may be linked to attacks, while signature-based has a predefined set of rules to match before an alert.

C.

Behavior-based uses a known vulnerability database, while signature-based intelligently summarizes existing data.

Answers
C.

Behavior-based uses a known vulnerability database, while signature-based intelligently summarizes existing data.

D.

Signature-based uses a known vulnerability database, while behavior-based intelligently summarizes existing data.

Answers
D.

Signature-based uses a known vulnerability database, while behavior-based intelligently summarizes existing data.

Suggested answer: B

Explanation:

Behavior-based detection monitors the behavior of programs in real-time. If a piece of software acts similarly to known malware after it's been executed, behavior-based detection can stop it in its tracks. Signature-based detection involves searching for known patterns of data within executable code; if a pattern matches a ''signature'' in the system's database that is considered malicious.Reference:Cisco Cybersecurity Operations Fundamentals

asked 07/10/2024
Jim Apple
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first