COMPUTER ETHICS AND SECURITY
FIREWALLS AND ANTIVIRUS SOFTWARE
Question
[CLICK ON ANY CHOICE TO KNOW THE RIGHT ANSWER]
|
|
False
|
|
True
|
|
Either A or B
|
|
None of the above
|
Detailed explanation-1: -In endpoint protection solutions, a false positive is an entity, such as a file or a process that was detected and identified as malicious even though the entity isn’t actually a threat. A false negative is an entity that wasn’t detected as a threat, even though it actually is malicious.
Detailed explanation-2: -A false positive is a result which indicates that a certain condition is present when it actually is not.
Detailed explanation-3: -Definition(s): An alert that incorrectly indicates that a vulnerability is present.
Detailed explanation-4: -A true positive is where a rule is configured and logs match that rule for a real threat. This means the rule worked as intended and alarmed correctly. A false positive is where a rule is configured and the log matches the rule, however the logs that matched are not considered a threat and should be ignored.