Defined term

Intrusion Detection Systems (IDS)

Intrusion Detection Systems (IDS): (IDS), (network-based) IDSs which detect attacks by capturing and analyzing network packets.

Verified
📚 Multi-Source
Cybersecurity

Definition

(IDS), (network-based) IDSs which detect attacks by capturing and analyzing network packets. Listening on a network segment or switch, one network-based IDS can monitor the network traffic affecting multiple hosts that are connected to the network segment.

Alternative Definitions

Definition 2

Hardware or software product that gathers and analyzes information from various areas within a computer or a network to identify possible security breaches, which include both intrusions (attacks from outside the organizations) and misuse (attacks from within the organizations.) (CNSSI-4009) (NISTIR)

Source: The Cyber GlossaryType: external

Sources

1
Committee on National Security Systems Glossary CNSSI 4009-2015
View Source
2
The Cyber Glossary
View Source

Continue Research

Browse the full glossary for adjacent terms, or subscribe for updates when definitions and sources are expanded.