Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Google Safe Browsing marked Sandboxie releases as harmful #847

Closed
Erquint opened this issue May 21, 2021 · 5 comments
Closed

Google Safe Browsing marked Sandboxie releases as harmful #847

Erquint opened this issue May 21, 2021 · 5 comments
Labels
false positive False security alerts from third-party companies fixed in next build Fixed in the next Sandboxie version Known issue Old known Sandboxie issues

Comments

@Erquint
Copy link

Erquint commented May 21, 2021

When navigating to https://github.com/sandboxie-plus/Sandboxie/releases

Google's report here:
https://transparencyreport.google.com/safe-browsing/search?url=https://github.com/sandboxie-plus/Sandboxie/releases&hl=en-US

If it's a false positive, please sort it out with Google.

@isaak654
Copy link
Collaborator

isaak654 commented May 21, 2021

You can submit the URL as false positive in this Google form and providing additional details:
https://safebrowsing.google.com/safebrowsing/report_error/?url=https://github.com/sandboxie-plus/Sandboxie/releases&hl=en-US

Edit: it's fixed now: #847 (comment)

Workaround 1:
the URL with the trailing slash doesn't have the red warning if you open it in another tab:
https://github.com/sandboxie-plus/Sandboxie/releases/

Workaround 2:
the URL https://github.com/sandboxie-plus/Sandboxie/releases/latest works fine too.

@isaak654 isaak654 added Known issue Old known Sandboxie issues Workaround Temporary or alternative solution labels Jun 7, 2021
@isaak654
Copy link
Collaborator

isaak654 commented Jun 12, 2021

Jun 12, 2021 - While Virustotal whitelisted the URL, Google didn't do it.
Jun 13, 2021 - Virustotal reverted the whitelisted status, now it's in malicious state again, like in the Google report.
Jun 17, 2021 - Still in malicious state on both Google and Virustotal
Jun 18, 2021 - Still in malicious state on both Google and Virustotal
Jun 19, 2021 - Just filled and sent another feedback to Google for the second time
.....
Jul 17, 2021 - Just found a hidden Report a Security Issue form that is visible only for certain logged Google Accounts. An email was sent the same day through the form.
Jul 18, 2021 - GitHub support suggested to contact privately one of their security engineers who has offered to assist us.
Jul 19, 2021 - Google suggested to contact GitHub support and to follow their Software Guidelines about the Google Safe Browsing warning.
Jul 20, 2021 - We replied to Google that finding the exact cause would be appreciated.
Jul 25, 2021 - I discovered a problem with the Plus uninstaller that leaves two registry keys in the system... possible cause mentioned in the Google's Software Guidelines.
Jul 27, 2021 - Fix included in 0.8.9 / 5.50.9 and mentioned in the changelog.
Jul 28, 2021 - No accurate answer yet from Google or the GitHub engineer.
Jul 30, 2021 - Both VirusTotal and Google Safe Browsing reports are clean now! Yeah!

@isaak654
Copy link
Collaborator

This is now fixed on both VirusTotal and Google!

Apparently this pull request made the difference: #1037

@isaak654 isaak654 added fixed in next build Fixed in the next Sandboxie version and removed Workaround Temporary or alternative solution labels Jul 30, 2021
@isaak654 isaak654 unpinned this issue Jul 30, 2021
@Erquint
Copy link
Author

Erquint commented Sep 21, 2021

Glad it's been resolved and my gratitude to @isaak654 for a recap.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
false positive False security alerts from third-party companies fixed in next build Fixed in the next Sandboxie version Known issue Old known Sandboxie issues
Projects
None yet
Development

No branches or pull requests

3 participants