Mar 14, 2026 • Didier Stevens
Update: oledump.py Version 0.0.84
This article announces a software update for the open-source analysis tool oledump.py, specifically version 0.0.84. The release addresses a functional fix...
Executive Summary
This article announces a software update for the open-source analysis tool oledump.py, specifically version 0.0.84. The release addresses a functional fix regarding the -yarastrings option, ensuring improved accuracy when scanning OLE files for specific string patterns using YARA rules. The update includes verification hashes (MD5 and SHA256) for integrity checking of the downloaded zip archive. Importantly, this publication does not detail any active cyber threats, malware campaigns, or threat actor activities. It serves as a maintenance notification for security professionals and analysts who utilize oledump.py for document malware analysis. Users relying on this tool for forensic investigations or threat hunting should upgrade to this version to benefit from the corrected functionality. No immediate defensive actions against external threats are required based on this text, as it pertains solely to tooling improvement rather than vulnerability patching or incident response regarding a specific attack vector.
Summary
This is a fix for option –yarastrings. oledump_V0_0_84.zip (http)MD5: 24EA0DEAA6FCB2FA234F33DD179BBAAFSHA256: C966607C864AAE1D956279B4C3087D37BD003072ED39143512979E771BA5462A
Published Analysis
This article announces a software update for the open-source analysis tool oledump.py, specifically version 0.0.84. The release addresses a functional fix regarding the -yarastrings option, ensuring improved accuracy when scanning OLE files for specific string patterns using YARA rules. The update includes verification hashes (MD5 and SHA256) for integrity checking of the downloaded zip archive. Importantly, this publication does not detail any active cyber threats, malware campaigns, or threat actor activities. It serves as a maintenance notification for security professionals and analysts who utilize oledump.py for document malware analysis. Users relying on this tool for forensic investigations or threat hunting should upgrade to this version to benefit from the corrected functionality. No immediate defensive actions against external threats are required based on this text, as it pertains solely to tooling improvement rather than vulnerability patching or incident response regarding a specific attack vector. This is a fix for option –yarastrings. oledump_V0_0_84.zip (http)MD5: 24EA0DEAA6FCB2FA234F33DD179BBAAFSHA256: C966607C864AAE1D956279B4C3087D37BD003072ED39143512979E771BA5462A This is a fix for option –yarastrings. oledump_V0_0_84.zip ( http ) MD5: 24EA0DEAA6FCB2FA234F33DD179BBAAF SHA256: C966607C864AAE1D956279B4C3087D37BD003072ED39143512979E771BA5462A