Stories by Andre Yee

Making false positives go away

Network intrusion-detection systems (IDS) have long been recognized as a necessary component of a multilayered security architecture. False positives have long been the bane of IDSs, leading some to even question the value of these products. In the past, many security professionals have found the effectiveness of intrusion detection limited by the need to process a large number of alert notifications, many of which are either incorrect or irrelevant.