If I have an algorithm for detecting a set of data points that indicate with a high level of certainty that some event has occured OR that behaviors outside of a set model are occuring.
What would you call the algorithm used to detect these anomalies?
And
Would calling it an "analytic" be incorrect?
One specific example would be detecting a ICMP tunneling by observing unusual spikes in ICMP messages or unusually large ICMP packets.
– Jay Hawk Sep 24 '18 at 16:46