Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Remove CRITICAL false positives for popular open-source projects #232

Closed
9 tasks done
Tracked by #173
tstromberg opened this issue May 21, 2024 · 3 comments
Closed
9 tasks done
Tracked by #173

Remove CRITICAL false positives for popular open-source projects #232

tstromberg opened this issue May 21, 2024 · 3 comments
Labels
false-positive This rule has false positives rules Adds or modifies YARA Rules

Comments

@tstromberg tstromberg mentioned this issue May 21, 2024
5 tasks
@imjasonh
Copy link
Member

imjasonh commented Jun 4, 2024

We're using Wolfi as a benchmark open-source repo. There are a dozen or so CRITICAL false positives that exist, mainly relating to Python code.

Is there a list of these somewhere? I'd love to investigate.

@egibs
Copy link
Member

egibs commented Jul 29, 2024

Linking recent false positive fix PRs for posterity:

@egibs egibs added rules Adds or modifies YARA Rules false-positive This rule has false positives labels Jul 29, 2024
@egibs
Copy link
Member

egibs commented Aug 12, 2024

Closing this out -- we've resolved most of the outstanding false positives; new false positives are handled as they show up.

@egibs egibs closed this as completed Aug 12, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
false-positive This rule has false positives rules Adds or modifies YARA Rules
Projects
None yet
Development

No branches or pull requests

3 participants