Uploaded image for project: 'Tika'
  1. Tika
  2. TIKA-3555

Eset antivirus found threat in the GitHub repo after Git clone

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Open
    • Major
    • Resolution: Unresolved
    • None
    • None
    • None
    • None

    Description

      I've just cloned this GitHub repo  https://github.com/apache/tika  when I saw the popup from ESET antivirus on my machine.

      Real-time file system protection - Threat
      
      Alert triggered on computer:
      
      C:\Git\GitHub\tika\tika-parsers\tika-parsers-standard\tika-parsers-standard-modules\tika-parser-pkg-module\src\test\resources\test-documents\droste.zip
      
      contains Archbomb.ZIP trojan.
      

      See the attached screenshots.

       

      Is this a real threat in the repo or false alarm? Could you please do a security scan?

      Attachments

        1. tika-suspicious-file.png
          27 kB
          Krisztián Gyula Tóth
        2. eset_tika_alert.png
          10 kB
          Krisztián Gyula Tóth

        Issue Links

          Activity

            People

              Unassigned Unassigned
              ktothdev Krisztián Gyula Tóth
              Votes:
              0 Vote for this issue
              Watchers:
              5 Start watching this issue

              Dates

                Created:
                Updated: