Commit Graph

268 Commits

Author SHA1 Message Date
Thomas Stromberg
aa7d9d21f7
Fix firefox typo 2023-01-04 11:05:03 -05:00
Thomas Stromberg
ba23df1fef
Catch up to other false positives over winter break 2023-01-04 11:03:38 -05:00
Thomas Strömberg
12acae7250
Merge pull request #104 from tstromberg/new-years
New Years FP cleanup: monitorix, snap-confine, steam, spotify, etc
2023-01-03 08:50:59 -05:00
Thomas Stromberg
a8b95a2c9e
New Years cleanup: monitorix, snap-confine, steam, spotify, etc 2023-01-03 08:50:19 -05:00
Thomas Strömberg
fd2b240344
Merge pull request #103 from tstromberg/sketchy-fetcher-refactor
sketchy fetchers: Remove trailing commas
2022-12-20 08:03:54 -05:00
Thomas Stromberg
44ca59c9d6
sketchy fetchers: Remove trailing commas 2022-12-20 08:03:14 -05:00
Thomas Strömberg
a6a8c28448
Merge pull request #102 from tstromberg/sketchy-fetcher-refactor
sketchy fetcher: Add grandparents and TLD detector
2022-12-20 07:54:17 -05:00
Thomas Strömberg
45cbb3e731
Merge pull request #101 from tstromberg/parent-missing
parent-missing-from-disk: Filter out Docker children too
2022-12-20 07:54:10 -05:00
Thomas Stromberg
40c20825e6
sketchy fetcher: Add grandparents and TLD detector 2022-12-20 07:53:29 -05:00
Thomas Stromberg
6ca3d92243
Filter out Docker children too 2022-12-20 07:52:04 -05:00
Thomas Stromberg
350b0d8970
Add k3s /dev/kmsg exception, add parent info 2022-12-20 07:51:29 -05:00
Thomas Stromberg
15d3251120
False-positive flush: mount.ntfs, docker-credential-desktop, exotic socket refactor 2022-12-19 18:06:06 -05:00
Thomas Stromberg
49a19a6fd5
Sort out more false positives 2022-12-16 17:37:32 -05:00
Thomas Stromberg
404adf3e1f
Another false positive flush: Capital One, tailscaled, agetty, snap, ninja, epson printers, etc 2022-12-15 16:51:58 -05:00
Thomas Stromberg
0b8a67a48f
Add exception for JetBrains Toolbox 2022-12-15 10:25:35 -05:00
Thomas Stromberg
16f9b2f3ee
Remove more false positives: kind, gopls, docker.socket, etc 2022-12-15 10:20:16 -05:00
Thomas Stromberg
60e5435ed4
Allow mount-product-files and / (bad data), add cgroup_path 2022-12-15 09:20:41 -05:00
Thomas Stromberg
47b208eb71
Allow gcloud auth application-default login 2022-12-15 09:12:30 -05:00
Thomas Stromberg
685a79d3e1
Add Vimium 2022-12-15 09:11:14 -05:00
Thomas Stromberg
2731759d9b
Add Signal Helper 2022-12-15 09:07:11 -05:00
Thomas Stromberg
76d5c8564b
Resolve latest reported false positives 2022-12-02 11:20:18 -05:00
Thomas Stromberg
b9e0ad34a3
Post-Thanksgiving false positive flush 2022-11-28 16:06:07 -05:00
Thomas Stromberg
39e9aee6eb
Split parent-missing-from-disk, address false positives 2022-11-23 07:10:03 -05:00
Thomas Stromberg
4c242773a2
Add ~/Code exception, widen pnpm exception 2022-11-22 16:30:09 -05:00
Thomas Stromberg
8281a825db
Add dnf with python 3.11 2022-11-22 16:29:52 -05:00
Thomas Stromberg
a134827165
Add gdm-session-wor 2022-11-22 09:24:03 -05:00
Thomas Stromberg
6a7c4b6668
Pre-Thanksgiving False Positive cleanup, including Pop!OS support 2022-11-22 09:21:03 -05:00
Thomas Stromberg
8e3d6a1614
False positives: melange, ~/dev, debian-sa1, AdBlock, cover, kubelr, etc 2022-11-18 10:27:43 -05:00
Thomas Stromberg
85fdfaaa62
empty-environ: only check root pids to reduce false-positives 2022-11-18 09:32:00 -05:00
Thomas Stromberg
018eb595c5
Add goa-daemon exception (sends telemetry to Google) 2022-11-17 10:17:45 -05:00
Thomas Stromberg
eeeaeecda1
Add exceptions for Microsoft teams, ldconfig, fix go build paths 2022-11-17 07:20:19 -05:00
Thomas Strömberg
60d66a5e41
Merge pull request #86 from tstromberg/hidden-exec
Add hidden-executable rule
2022-11-16 20:56:14 -05:00
Thomas Stromberg
288ec9e0f5
Add hidden-executable rule 2022-11-16 20:55:49 -05:00
Thomas Stromberg
9f63e3b21d
Begin making use of cgroup_paths, clear more false positives 2022-11-16 16:52:39 -05:00
Thomas Stromberg
3d7bc8363e
More false positive management 2022-11-16 14:49:36 -05:00
Thomas Stromberg
18f17bbee8
Complete cleanup phase 1 2022-11-16 11:18:45 -05:00
Thomas Stromberg
b8d66ae814
Allow -sP /usr/sbin/firewalld 2022-11-16 11:03:34 -05:00
Thomas Stromberg
8047c88374
Run 'make reformat' 2022-11-16 11:02:29 -05:00
Thomas Stromberg
5d1e64ecc1
Fix file.mode comparisons 2022-11-16 11:01:22 -05:00
Thomas Stromberg
febf6cfebd
Remove newer access time check, add Sublime/Microsoft exclusion 2022-11-16 10:56:58 -05:00
Thomas Stromberg
2f30604c07
Allow Software Signing procs to be empty 2022-11-16 10:56:36 -05:00
Thomas Stromberg
f78cca5844
Be more lenient about Software Signing processes 2022-11-16 10:54:23 -05:00
Thomas Stromberg
398cbde41f
Add more exception for local webhook development 2022-11-16 10:40:46 -05:00
Thomas Stromberg
e8ee572311
Add exception for snap container mounts 2022-11-16 10:39:21 -05:00
Thomas Stromberg
f36b74c487
Fix ko-app allowance 2022-11-16 10:38:22 -05:00
Thomas Stromberg
7527e11a3b
Add systemd-fsckd, blueman-mechanism 2022-11-16 10:37:38 -05:00
Thomas Stromberg
ac4a0b84df
var executables: put quote marks around modes with leading zeros 2022-11-11 07:53:45 -05:00
Thomas Stromberg
4a9a967b47
execdir: Add ~/go and ~/bin exceptions 2022-11-10 12:55:09 -05:00
Thomas Stromberg
f7237c3641
https client: Add cargo running from homedir 2022-11-10 12:26:38 -05:00
Thomas Stromberg
875caaf64e
Add redhat-lsb back 2022-11-10 12:14:18 -05:00