Skip to content

False Positive Alerts should either not be emailed, or should be indicated as False Positive when emailed #1565

@uj

Description

@uj

Acknowledgements

Describe the bug

Alerts that are properly being auto-tagged as false-positives are also being emailed without any indication in the email that they are a false positive.

False positives should either not be emailed, or should be emailed with an indication that they were tagged as a false-positive.

Regression Issue

  • Select this option if this issue appears to be a regression.

Expected Behavior

Do not email false positive alerts, or indicated they are false positive.

Current Behavior

False positive alerts are being emailed without any indication that they are false positives.

Reproduction Steps

Create a rule to auto-tag an alert as false positive.
Do something to trigger that alert.
See that it shows up automatically in the GUI, automatically tagged as false-positive.
Also, note that it is emailed without any indication that it is false-positive.

Possible Solution

No response

Additional Information/Context

No response

UTMStack Version

11.1.8

Operating System and version

Ubuntu

Hypervisor and Version | Server Vendor and Model

Proxomx

Browser and version

Chrome

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

Projects

Status

👀 In review

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions