What differentiates knowledge-based systems from behavior-based systems?
What differentiates knowledge-based systems from behavior-based systems?
Knowledge-based systems rely on previously stored information or databases to make determinations, distinguishing what is considered 'bad' based on existing data and patterns. They do not typically seek out new traits. This explanation aligns with knowledge-based systems storing and pulling from a premade database that helps identify undesirable elements.
seems to be the correct answer
Behavior-based systems are designed to find new and distinct traits or patterns that could indicate malicious or abnormal activity, whereas knowledge-based systems use pre-existing knowledge to make determinations.
2.18.1 Differentiate between knowledge-based and behavior-based systems
Knowledge based = Signature based according to what i read. Study Guide p103 references: https://www.paloaltonetworks.com/cyberpedia/what-is-an-intrusion-prevention-system-ips https://www.paloaltonetworks.com/cyberpedia/what-is-an-intrusion-detection-system-ids