Hacker News new | ask | show | jobs
by skymt 1618 days ago
AV vendors have points of contact to report false positives. They don't always respond quickly, but they're not brick walls. Reliable FPs from a specific toolchain seems like something their team would be especially interested in solving. CrowdStrike's reporting point is an email address on their contact page: https://www.crowdstrike.com/contact-us/
1 comments

Ok I sent an email report explaining the issue with additional info. Let's see what happens.

Edit: Got a reply:

> Thank you for contacting CrowdStrike’s public AV scanner team! If you have not done so yet, please upload a sample of the file in question to Hybrid Analysis at https://www.hybrid-analysis.com/. Furthermore, please make sure that your request contains the SHA256 hash of the file.

I look forward to them no longer flagging one specific Nim binary produced just as an example.