chainguard-dev / bincapz

detect malicious program behaviors
Apache License 2.0
404 stars 26 forks source link

critical false positive: combo/backdoor/php in chezmoi #133

Closed tstromberg closed 4 months ago

tstromberg commented 4 months ago

I think this rule is garbage, or at least missing something significant:


| 4/CRITICAL | combo/backdoor/php            | php bin hashbang: "#!/bin/                                                                                   |
|            |                               | <?php"                                                                                                       ```