Opened 5 months ago

Last modified 5 months ago

#69187 new defect

Updated from version 2.8.1 to 2.9 Crowdstrike altert from IT — at Initial Version

Reported by: eraldtroja Owned by:
Priority: Normal Milestone:
Component: base Version: 2.9.0
Keywords: crowdstrike alerts, data dump Cc:
Port:

Description

I can provide more details as I get them from IT but in a nutshell this has occurred and I need some guidance.

I was at version 2.8.1 as of yesterday morning. I fired up the following commands to update my ports:

sudo port selfupdate sudo port upgrade outdated sudo port uninstall inactive

I'm running MacOS Sonoma 14.3. The system is managed by my IT department.

Within minutes of performing the update I received calls from IT stating that Crowdstrike had alerted them of a data dump, hence my machine would need to be brought in for a complete wipe.

I think this might be a case of a false positive, and I'll provide more details if needed, but I need to get some guidance of what an update from 2.8.1 to 2.9 does in order to possible categorize it as a false positive when it comes to a "data dump"

Thank you.

Change History (0)

Note: See TracTickets for help on using tickets.