Skip to main content

A Python package and command line utility for scanning emails with YARA rules

Project description

yaramail logo

yaramail

Python tests PyPI PyPI - Downloads

yaramail is a Python package and command line utility for scanning emails with YARA rules. It is ideal for automated triage of phishing reports.

CLI Demo

asciicast

Features

  • Scans all parts of an email via API or CLI
    • Headers
      • Removes header indents by default for consistent scanning
    • Plain text and HTML body content
      • Converts body content to Markdown by default for consistent scanning
    • Attachments
      • Raw file content
      • Emails attached to emails
      • PDF document text
      • ZIP file contents, including nested ZIP files
        • Uses message body content as a list of possible ZIP passwords
        • Customizable list of passwords to use when attempting to scan encrypted ZIP files
  • Provides a built-in methodology for categorizing emails
  • Parses Authentication-Results headers

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

yara_mail-3.3.0.tar.gz (14.5 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

yara_mail-3.3.0-py3-none-any.whl (15.2 kB view details)

Uploaded Python 3

File details

Details for the file yara_mail-3.3.0.tar.gz.

File metadata

  • Download URL: yara_mail-3.3.0.tar.gz
  • Upload date:
  • Size: 14.5 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: Hatch/1.16.2 cpython/3.12.3 HTTPX/0.28.1

File hashes

Hashes for yara_mail-3.3.0.tar.gz
Algorithm Hash digest
SHA256 f9eeb0b72b1aa2a45bf83eadd23684b3ba13510dc8350ef1667920764859f53a
MD5 c7c44e0b5815357755ed6e16a02cd51f
BLAKE2b-256 2b190944011cb4970f2b4ba64d0f44a69ee1ac9f2cbe3ca9216f47442417f08d

See more details on using hashes here.

File details

Details for the file yara_mail-3.3.0-py3-none-any.whl.

File metadata

  • Download URL: yara_mail-3.3.0-py3-none-any.whl
  • Upload date:
  • Size: 15.2 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: Hatch/1.16.2 cpython/3.12.3 HTTPX/0.28.1

File hashes

Hashes for yara_mail-3.3.0-py3-none-any.whl
Algorithm Hash digest
SHA256 e1998d86f8a9c08cbbe04581a7f637bc8b101b388c364ed129854c73d8280d4f
MD5 72520a96acd934ec72a463bd6a22b69c
BLAKE2b-256 050c11b889d7ce0c5122eacb1167b8db81c9cb8c6cde0979d9b9dbbf33eae06f

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page