scambier / obsidian-text-extractor

A (companion) plugin to facilitate the extraction of text from images (OCR) and PDFs.
GNU General Public License v3.0
346 stars 19 forks source link

[Security Concerns] Backdoors reported by Antivirus #56

Closed SH3LLco closed 7 months ago

SH3LLco commented 7 months ago

threat2 threat1 threat5 threat4 threat3

scambier commented 7 months ago

@SH3LLco could you just confirm this issue was a sort of false positive? Just for peace of mind, thank you :)

In the meantime, for future readers: the quarantined files in this issue are the .json files (i.e. structured text) containing the extracted values from images and PDFs. Given that SH3LLco seems to work in security, it's probable that they have files containing malicious code, which were extracted as raw text. The antivirus was then rightfully triggered because the .json contained the code in text form.

Of course, if there was any known severe security issue, I'd do my best to fix it asap, and work with the Obsidian team to remove the plugin from the store if necessary.