anomaly detection


Also found in: Dictionary, Thesaurus, Medical, Legal, Financial, Wikipedia.

anomaly detection

[ə′näm·ə·lē di‚tek·shən]
(computer science)
The technology that seeks to identify an attack on a computer system by looking for behavior that is out of the norm.

anomaly detection

An approach to intrusion detection that establishes a baseline model of behavior for users and components in a computer system or network. Deviations from the baseline cause alerts that direct the attention of human operators to the anomalies. See IDS and anomaly.
References in periodicals archive ?
In the report, Gartner evaluated Metafor's machine learning based anomaly detection and alerting service, as well as Metafor's configuration analytics module.
The advanced anomaly detection technology provides a simple set of indicators for the operator's technical staff, enabling more efficient data analysis," said Marco Sala, AgustaWestland Senior Vice President Customer Support & Services Italy.
Our Anomaly Detection and Inactivity Alerting adds a new level of sophistication to Logentries that notifies users in real-time when something significantly changes in their system, such as application usage patterns, system response times or server resource consumption.
The unique combination of behavioral, statistical and content anomaly detection features sets CounterStorm apart from other solutions in the market today.
NetQoS Anomaly Detection is an early warning system that continuously monitors traffic and performance details from network hosts and alerts network engineers to abnormal patterns that could impact application performance and delivery.
10, 2012 /PRNewswire/ --Guardian Analytics, the market leader in behavioral analytics-based fraud prevention solutions, announced today the release of its Anomaly Detection Toolkit to help financial institutions successfully address the minimum expectations for layered security outlined in the FFIEC Supplement to the Authentication in an Internet Banking Environment.
The industry's first and only anomaly detection technology to operate at the application layer of network traffic, or Layer 7, SPA was developed specifically to detect the low profile, slow and stealthy behavior characteristic of targeted attacks.
New Version Leverages IBM BladeCenter and Powerful New User Interface to Simplify System Expansion While Dramatically Enhancing Anomaly Detection Capabilities
StealthWatch is the only flow-based, enterprise solution to combine powerful network performance monitoring with behavior-based anomaly detection to deliver total network visibility, ensuring network security, performance and availability.
Delivers Unprecedented Network Performance Monitoring and Behavior-based Anomaly Detection
Nevis Solution: The company's LANenforcer systems apply advanced anomaly detection capabilities to continuously detect and mitigate virus, worm and blended threat outbreaks such as the Storm Worm to persistently protect customers.
QRadar Differentiated from Cisco MARS Through Its Multi-Vendor Support and Robust Anomaly Detection Capabilities