Chapter 26

Intrusion Prevention and Detection Systems

Christopher Day,    Terremark Worldwide, Inc.

1 What is an ‘Intrusion’ Anyway?

Information security concerns itself with the confidentiality, integrity and availability of information systems and the information or data they contain and process. An ‘intrusion’ then is any action taken by an adversary that has a negative impact on the confidentiality, integrity, or availability of that information. Given such a broad definition of ‘intrusion’ it is instructive to examine a number of commonly occurring classes of information system (IS) intrusions.

2 Physical Theft

Having physical access to a computer system allows an adversary to bypass most security protections put in place to prevent unauthorized ...

Get Computer and Information Security Handbook, 2nd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.