chainguard-dev / bincapz

detect malicious program behaviors
Apache License 2.0
404 stars 26 forks source link

high false positive: combo/wiper/crypto with argo-cd and bun #137

Closed tstromberg closed 4 months ago

tstromberg commented 4 months ago

I assume this is a false positive, but we should check it out:

## packages/x86_64/argo-cd-2.10-2/usr/bin/argocd
## packages/x86_64/argo-cd-2.10-compat-2/usr/local/bin/argocd
## packages/x86_64/argo-cd-2.7/usr/bin/argocd
## packages/x86_64/argo-cd-2.7-2/usr/bin/argocd
## packages/x86_64/argo-cd-2.7-compat-2/usr/local/bin/argocd
## packages/x86_64/argo-cd-2.8-2/usr/bin/argocd
## packages/x86_64/argo-cd-2.8-compat-2/usr/local/bin/argocd
## packages/x86_64/argo-cd-2.9-2/usr/bin/argocd
## packages/x86_64/argo-cd-2.9-compat-2/usr/local/bin/argocd
## packages/x86_64/argo-cd-compat-2.8/usr/local/bin/argocd
## packages/x86_64/bun-1.1/usr/bin/bun
## packages/x86_64/bun-bootstrap-1.0/usr/bin/bun