egibs
|
78ec36eca0
|
Add elastic-endpoint
Signed-off-by: egibs <20933572+egibs@users.noreply.github.com>
|
2024-11-20 14:02:05 -06:00 |
|
egibs
|
a24c3d2333
|
Add exceptions for Autodesk, cloud_sql_proxy, .md downloads, TF providers in /tmp/, and more
Signed-off-by: egibs <20933572+egibs@users.noreply.github.com>
|
2024-11-20 13:45:50 -06:00 |
|
Thomas Stromberg
|
2da853b35e
|
fpr: bwrap, malcontent, ld, metallb
|
2024-10-21 10:15:59 -04:00 |
|
Thomas Stromberg
|
4b10d10520
|
False-positives be damned
|
2024-08-27 18:40:43 -04:00 |
|
Thomas Stromberg
|
6c292f11af
|
fpr: kas, bitnami, redis, bincapz, kolide, docker, whatsapp
|
2024-07-12 16:55:49 -04:00 |
|
Thomas Stromberg
|
00fa80a0d9
|
Massive false-positive reduction, particularly for uBlue
|
2024-06-27 09:23:52 -04:00 |
|
Thomas Stromberg
|
18e05c5a4c
|
fpr: June 25
|
2024-06-25 20:48:09 -04:00 |
|
Thomas Stromberg
|
ab2535717f
|
fpr: Fedora Silverblue, MHLinkServer, new terminals
|
2024-05-23 17:26:33 -04:00 |
|
Thomas Stromberg
|
d3352610f4
|
fpr: snapd, cups, ubuntu, etc
|
2024-03-07 16:33:01 -05:00 |
|
Thomas Stromberg
|
8693fb6d4f
|
Add more rapid7 excludes
|
2024-01-26 14:24:11 -05:00 |
|
Thomas Stromberg
|
336a1fca4a
|
Add exceptions for Elastic Defend
|
2024-01-08 17:18:25 -05:00 |
|
Thomas Stromberg
|
a7f0b3001d
|
Reduce false positives on Ubuntu + Lima
|
2023-09-26 13:09:22 -04:00 |
|
Thomas Stromberg
|
485f69a61c
|
fpr: Revolt, Bearly, user executables, melange
|
2023-07-13 19:43:35 -04:00 |
|
Thomas Stromberg
|
a0e4183bf4
|
fpr: Velociraptor, nessus, kandji, java, SteelSeries, etc
|
2023-07-12 17:38:26 -04:00 |
|
Thomas Stromberg
|
fb7cd56249
|
fpr: abrt-dbus, gdm, chrome, ff, etc
|
2023-02-24 16:30:17 -05:00 |
|
Thomas Stromberg
|
d3780c0a6c
|
Remove ubuntu-lts false-positives on lima
|
2023-02-20 19:10:12 -05:00 |
|
Thomas Stromberg
|
d302a9ff55
|
Purge false positives, again and again
|
2023-02-02 21:46:53 -05:00 |
|
Thomas Stromberg
|
a8b95a2c9e
|
New Years cleanup: monitorix, snap-confine, steam, spotify, etc
|
2023-01-03 08:50:19 -05:00 |
|
Thomas Stromberg
|
15d3251120
|
False-positive flush: mount.ntfs, docker-credential-desktop, exotic socket refactor
|
2022-12-19 18:06:06 -05:00 |
|
Thomas Stromberg
|
eeeaeecda1
|
Add exceptions for Microsoft teams, ldconfig, fix go build paths
|
2022-11-17 07:20:19 -05:00 |
|
Thomas Stromberg
|
46ef9668d7
|
Add exception for 'go run'
|
2022-10-30 09:39:48 -04:00 |
|
Thomas Stromberg
|
6c78695b73
|
Final KubeCon 2022 false-positive cleanup
|
2022-10-28 19:24:00 -04:00 |
|
Thomas Stromberg
|
ab94de7770
|
Add a lot more mitre data
|
2022-10-19 16:56:32 -04:00 |
|
Thomas Stromberg
|
1bbd284a3c
|
Work through another series of false positives
|
2022-10-19 15:26:03 -04:00 |
|
Thomas Stromberg
|
984f754990
|
Add more false positive filters
|
2022-10-17 19:01:16 -04:00 |
|
Thomas Stromberg
|
d2bdffe89e
|
Add support for interval tags
|
2022-10-14 14:19:13 -04:00 |
|
Thomas Stromberg
|
20452b128b
|
Migrate query strings from double to single apostrophes
|
2022-10-13 14:59:32 -04:00 |
|
Thomas Stromberg
|
26ee658c4a
|
Initial re-organization around the MITRE ATT&CK framework
|
2022-10-11 21:53:36 -04:00 |
|