CriticalPathSecurity / Zeek-Intelligence-Feeds

Zeek-Formatted Threat Intelligence Feeds
MIT License
346 stars 46 forks source link

False positive #23

Closed Niloooooooooo closed 1 year ago

Niloooooooooo commented 1 year ago

Hello, I have found www.youtube.com being flagged as drb_ra_domains . Is it false positive? Thanks source in: drb_ra_domain.intel

www.youtube.com Intel::DOMAIN DRB-RA F C2

Patrick-Kelley commented 1 year ago

I'll remove it, immediately. I'll also work with the upstream provider to have it removed.

Niloooooooooo commented 1 year ago

Thanks for your help

Patrick-Kelley commented 1 year ago

You are most welcome! The removal should be in this next batch.

Reopening the ticket until I confirm resolution.

Patrick-Kelley commented 1 year ago

Issue confirmed as resolved. Thank you for reporting the issue!