Improving File Reputation Accuracy to Reduce False Positive Detections

Product: SentinelOne Endpoint Detection & Response

We’ve updated how SentinelOne evaluates file and process reputation across N-able managed environments to reduce false positive detections — alerts triggered by legitimate software rather than actual threats.

This change refines detection logic for specific, verified behavior so trusted activity isn’t flagged incorrectly, without weakening detection of genuine threats. No action is required on your part; the update has been applied at the policy level.

For details on one of the issues addressed by this update, see our KB article.

Questions? Contact Support and reference this post.

This entry was posted in EDR, N-central, N-sight. Bookmark the permalink.