Jump to content

Extrusion detection

From Wikipedia, the free encyclopedia
This is an old revision of this page, as edited by Wsm38456 (talk | contribs) at 00:05, 5 October 2006. The present address (URL) is a permanent link to this revision, which may differ significantly from the current revision.

Extrusion Detection is a branch of Intrusion Detection aimed at developing mechanisms to prevent the resources of a computer system from being used to attack other systems. Extrusion Detection techniques focus primarily on the analysis of internal system activity as well as outbound traffic in order to identify malicious users, malware or network traffic that may pose a threat to the security of a computing environment.

While Intrusion Detection is mostly concerned about the identification and mitigation of incoming attacks, Extrusion Detection systems try to prevent attacks from being launched in the first place by implementing monitoring controls at the leaf nodes of a network -- rather than at choke points, e.g., routers -- hereby distributing the inspection workload among multiple systems.

Outbound Intrusion Detection is a synonym for Extrusion Detection.



Related documents

"Extrusion Detection: Security Monitoring for Internal Intrusions"
"Stopping Spam by Extrusion Detection"
"Outbound Intrusion Detection"