Skip to content

Need Supporting Documentation for CyberSecurity (Security Concerns with CCA)  #354

@its-robinhood

Description

@its-robinhood

Describe the bug
Not necessarily a bug but we have security concerns here with CCA. I am corporate IT staff working with a municipality in Canada. Our security team has scanned the requested software and the verdict came back as highly suspicious as it detected possible Envyscout malware (in the main executable) used by the APT29 group by patterns already used in the past. Please see screenshot attached.

Perhaps anyone can confirm that this is a false positive provide us some supporting documents ?

Desktop (please complete the following information):

  • OS: [e.g. Windows 10 32 bits]
  • Version [e.g. 1.0.0]

To Reproduce
Steps to reproduce the behavior: Complete virus scan and provide submission report

Expected behavior
Clear virus scan and reporting no suspicious components - or supporting documentation for false positives.

Screenshots
Please see screenshot with the details of the findings.
CCA-AssemblyLineVerdict

Additional context
IT teams looking to roll out the tool for staff members but there is a security concern that's preventing approval.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions