Issues
- 3
- 2
Scanning `-compat` packages breaks scanning
#536 opened by egibs - 2
false positive: teleport marked CRITICAL due to multiple high risk behaviors
#320 opened by tstromberg - 2
- 0
Add detection for kubo/injector
#325 opened by tstromberg - 0
Add `make reformat-rules` target
#542 opened by tstromberg - 2
Add platform-specific tag to rules
#506 opened by r0binak - 0
Add detection for Medusa preload
#324 opened by tstromberg - 0
VirusTotal YARA-CI - false negatives found
#460 opened by tstromberg - 2
--min-risk=high breaks overrides
#522 opened by tstromberg - 1
Add risk values to simple output
#512 opened by tstromberg - 0
diff: add --risk-change and --risk-increase flags
#500 opened by tstromberg - 0
- 0
action: refactor recursiveScan
#497 opened by tstromberg - 2
`make test` no longer runs sample tests
#505 opened by tstromberg - 1
- 3
Add "filetypes" metadata to rules
#454 opened by tstromberg - 1
Add MITRE ATT&CK metadata to rules
#453 opened by tstromberg - 0
- 0
- 7
- 3
scan quietly quits if a critical finding is found and multiple folders are provided
#478 opened by tstromberg - 1
action.errIfHitOrMiss: panic: runtime error: invalid memory address or nil pointer dereference
#458 opened by tstromberg - 5
- 1
- 1
- 0
Cache bincapz-samples checkout
#445 opened by tstromberg - 3
- 0
- 0
Replace OCI test image with crane extraction
#428 opened by egibs - 1
Integrate JP-CERT YARA rules
#442 opened by tstromberg - 0
Better handling of questionable false-positives
#414 opened by egibs - 1
Infrequent nil pointer dereferences
#434 opened by egibs - 2
Investigate diff performance
#426 opened by egibs - 7
Scanning Keycloak takes a long time
#371 opened by egibs - 0
- 0
Address false negatives
#334 opened by tstromberg - 2
`go-yara` 4.3.3 breaks warning ID construction
#384 opened by egibs - 0
Allow for paths to be excluded from scanning.
#381 opened by egibs - 0
Improved filtering of rules by tags
#366 opened by r0binak - 1
Remove unused `--omit-empty` flag
#348 opened by tstromberg - 0
- 0
probable false: security_controls/linux/ufw in gdb
#336 opened by tstromberg - 3
probable false: evasion/decrypt/eval in mlflow-2.14 - fontTools/misc/psLib.py
#313 opened by tstromberg - 2
- 0
Add detection for kSpreader artifacts
#327 opened by tstromberg - 0
- 0
probable false: ransomware/conti in minio
#312 opened by tstromberg - 0
probable false: combo/backdoor/php in neovim
#314 opened by tstromberg - 0