Just a small change in this version: an indicator (O) for streams containing OLE 1.0 embedded data:
And plugin_http_heuristics also detects XOR-encoding starting with the second character of the key.
oledump_V0_0_26.zip (https)
MD5: 62030DEC6DBC2F69A37893FF1624F8EE
SHA256: A0DE8FD414A0B78FE8D72CAA58D8FA15159A7ABEA9842181C4C3C4EC1DE2EEC5
[…] OLEDump was updated to version 0.0.26 to include an ”an indicator (O) for streams containing OLE 1.0 embedded data and plugin_http_heuristics also detects XOR-encoding starting with the second character of the key.” Update: oledump.py Version 0.0.26 […]
Pingback by Week 50 – 2016 – This Week In 4n6 — Sunday 18 December 2016 @ 9:31
[…] Update: oledump.py Version 0.0.26 […]
Pingback by Overview of Content Published In December | Didier Stevens — Tuesday 10 January 2017 @ 0:01