|
False positive 2035595 - zgRAT / PureRAT confusion
|
|
3
|
138
|
August 9, 2026
|
|
False Positive Report - SID 2049637 (Bitbucket CVE-2022-1471 Vulnerable Server Detected 7.17.x–7.21.15) matches ALL 7.21.x including patched versions
|
|
1
|
65
|
July 23, 2026
|
|
False positive in SID 2067295 (CVE-2025-58180 OctoPrint upload) - pcre matches multipart line terminator
|
|
2
|
69
|
June 15, 2026
|
|
SID 2069172 Alerts on Benign Activity
|
|
1
|
84
|
May 8, 2026
|
|
False positive for 2067921 ET MALWARE PureLogs Stealer CnC ping Request
|
|
2
|
298
|
February 27, 2026
|
|
Potential False Positive for 2009099 being triggered by Aurora iOS app to AWS IP Addresses
|
|
1
|
56
|
February 23, 2026
|
|
Are Google LLC IPs flagged as malicious really worth investigating?
|
|
0
|
99
|
February 15, 2026
|
|
Bug: SID 2064326 has severity:1 but is labeled "ET INFO"
|
|
4
|
103
|
January 21, 2026
|
|
2010677 ET MALWARE Suspicious User-Agent (My Session)
|
|
4
|
131
|
December 5, 2025
|
|
Suricata not detecting attacks using emerging threats
|
|
0
|
176
|
November 4, 2025
|
|
False Positive 2065016 ET TROJAN BPFDoor Heartbeat (Outbound)
|
|
2
|
239
|
October 6, 2025
|
|
False family: renaming rules from Lumma stealer to GCleaner loader
|
|
1
|
128
|
September 8, 2025
|
|
Zyxel runCommandInShell Telnet Service - rule id 2060323
|
|
0
|
83
|
February 25, 2025
|
|
NMAP ruleset are FP?
|
|
1
|
180
|
September 5, 2024
|
|
FP on 2856495 - "ETPRO HUNTING If-Unmodified-Since Header with Microsoft BITS User-Agent"
|
|
1
|
208
|
March 27, 2024
|
|
SID 2012870 - Outbound Request contains pw
|
|
2
|
419
|
December 19, 2023
|
|
False positive on Android Trojan
|
|
1
|
374
|
October 19, 2023
|
|
Handling False Positive Reports as A Rule Writer! Special Guests: PCREs, Dalton, Dalton’s Flowsynth
|
|
11
|
776
|
October 12, 2023
|
|
Addressing an FP: 2016950 - ET MALWARE Possible Win32/Hupigon ip.txt with a Non-Mozilla UA
|
|
0
|
262
|
October 2, 2023
|