WithSecureLabs / drozer

The Leading Security Assessment Framework for Android.
https://labs.withsecure.com/tools/drozer
Other
3.94k stars 779 forks source link

drozer module detected as EXPLOIT:/JS.webdoid.B by Microsoft Defender for Mac #472

Closed tomat0paste closed 2 hours ago

tomat0paste commented 2 hours ago

Python version: 3.12.6 Pip version: 24.3.1 Drozer version: 3.1.0 OS version: MacOS sonoma 14.7.1 Command: pip install drozer

After pip install, Microsoft Defender detects nan_parse.cpython-312.pyc (nan_parse.py) as a threat. Is it possible to have this fixed or get flagged as "false positive"?

Yogehi commented 2 hours ago

We have no control over what Microsoft Defender marks our shit as. And we don't have the ability to tell Microsoft "this is totally not a virus ;)".

Best advice I can give is to run this in a VM, or manually configure your copy of Microsoft Defender to ignore the Drozer folder.

Because you can totally trust a random person on the internet that Drozer isn't full of malicious code.