Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Issue: Sophos AV blocks gsudo #347

Open
bh-chwo opened this issue Apr 25, 2024 · 0 comments
Open

Issue: Sophos AV blocks gsudo #347

bh-chwo opened this issue Apr 25, 2024 · 0 comments

Comments

@bh-chwo
Copy link

bh-chwo commented Apr 25, 2024

Issue Description

I tried upgrading some apps with winget, but my Sophos AV instantly blocked the function and isolates the PC.

Steps to Reproduce

  1. powershell
  2. gsudo winget upgrade
  3. PC is isolated

Screenshots

Screenshot 2024-04-25 115125

gsudo --debug winget upgrade
Debug: Invoking Shell: PowerShellCore
Debug: Command Line: --debug winget upgrade
Debug: Command to run: "C:\Program Files\PowerShell\7\pwsh.exe" -NoLogo -NoProfile -Command "winget upgrade"
Debug: Using Console mode TokenSwitch
Debug: Caller PID: 15432
Debug: Connected via Named Pipe ProtectedPrefix\Administrators\gsudo_DF763A2E0FF2D26118E29D84696CBBF5EB5C619350AB009D1B0B680D6A5ECDE8.
Debug: Creating target process: "C:\Program Files\PowerShell\7\pwsh.exe" -NoLogo -NoProfile -Command "winget upgrade"
Debug: Process token successfully substituted.
Debug: Process exited with code 0

Context:

  • Windows version:

Version 22H2 (Build 22621.3447) - German

  • gsudo version:

gsudo v2.4.4 (Branch.tags-v2.4.4.Sha.cf887bf98d5d3d90fc1eebc08c7a277afb50cd19)
Copyright(c) 2019-2022 Gerardo Grignoli and GitHub contributors

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant