Terminal app creates false positives with FireEye rules #5003

Closed
opened 2026-01-31 00:02:41 +00:00 by claunia · 2 comments
Owner

Originally created by @SOM-fermonte on GitHub (Nov 14, 2019).

Originally assigned to: @bitcrazed, @cinnamon-msft on GitHub.

This will only be an issue for users in Enterprise environments where there are tight firewall controls.

I don't have access to the Windows Store and I downloaded Windows Terminal from the GitHub page. I installed the required runtimes and was able to launch the app, only to be contacted by network security about alerts coming from my PC. After explaining what I was doing, they said they would submit a ticket for a false positive, but in the meantime I cannot use the application at all without triggering more alerts. If someone who is not familiar with my case is on duty, then I get calls again.

Rather than having issues like this, it is better if Microsoft approaches a few major security vendors with details about Windows Terminal so that they can work out the kinks in their rules. This would avoid issues when trying to do the product launch next year.

Originally created by @SOM-fermonte on GitHub (Nov 14, 2019). Originally assigned to: @bitcrazed, @cinnamon-msft on GitHub. This will only be an issue for users in Enterprise environments where there are tight firewall controls. I don't have access to the Windows Store and I downloaded Windows Terminal from the GitHub page. I installed the required runtimes and was able to launch the app, only to be contacted by network security about alerts coming from my PC. After explaining what I was doing, they said they would submit a ticket for a false positive, but in the meantime I cannot use the application at all without triggering more alerts. If someone who is not familiar with my case is on duty, then I get calls again. Rather than having issues like this, it is better if Microsoft approaches a few major security vendors with details about Windows Terminal so that they can work out the kinks in their rules. This would avoid issues when trying to do the product launch next year.
claunia added the Resolution-Duplicate label 2026-01-31 00:02:41 +00:00
Author
Owner

@DHowett-MSFT commented on GitHub (Nov 14, 2019):

Thanks. We'll track this with its counterpart /dup #2568.

@DHowett-MSFT commented on GitHub (Nov 14, 2019): Thanks. We'll track this with its counterpart /dup #2568.
Author
Owner

@ghost commented on GitHub (Nov 14, 2019):

Hi! We've identified this issue as a duplicate of another one that already exists on this Issue Tracker. This specific instance is being closed in favor of tracking the concern over on the referenced thread. Thanks for your report!

@ghost commented on GitHub (Nov 14, 2019): Hi! We've identified this issue as a duplicate of another one that already exists on this Issue Tracker. This specific instance is being closed in favor of tracking the concern over on the referenced thread. Thanks for your report!
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: starred/terminal#5003