chainguard-dev / bincapz

detect malicious program behaviors
Apache License 2.0
404 stars 26 forks source link

high false positive: combo/worm/ssh with argocd #140

Closed tstromberg closed 4 months ago

tstromberg commented 4 months ago

I assume this is a false positive, even it it looks pretty weird:

## packages/x86_64/argo-cd-2.10-2/usr/bin/argocd
## packages/x86_64/argo-cd-2.10-compat-2/usr/local/bin/argocd
## packages/x86_64/argo-cd-2.7/usr/bin/argocd
## packages/x86_64/argo-cd-2.7-2/usr/bin/argocd
## packages/x86_64/argo-cd-2.7-compat-2/usr/local/bin/argocd
## packages/x86_64/argo-cd-2.8-2/usr/bin/argocd
## packages/x86_64/argo-cd-2.8-compat-2/usr/local/bin/argocd
## packages/x86_64/argo-cd-2.9-2/usr/bin/argocd
## packages/x86_64/argo-cd-2.9-compat-2/usr/local/bin/argocd
## packages/x86_64/argo-cd-compat-2.8/usr/local/bin/argocd