With Attachment Password Guessing, Cloud App Security attempts to find passwords in email content (subject, body, and attachment names) to access password-protected attachments, making it possible to detect any malicious payload in these files.
Attachment Password Guessing is available only after you turn on the Malware Scanning filter or Virtual Analyzer filter. This feature supports the following services, attachment file types, and email languages.
Services |
Attachment File Types |
Email Languages |
---|---|---|
|
Note:
Cloud App Security uses the true file types instead of file extensions to identify file types. |
|
Cloud App Security uses both predefined and user-defined password extraction rules to extract passwords from an email.
Make sure the regular expressions follow the expression formats defined in Perl Compatible Regular Expressions (PCRE). For more information on PCRE, visit the following website: http://www.pcre.org/.
Preceding Text: The text preceding a password in an email.
Password: The password in an email.
Subsequent Text: The text following a password in an email.
Input the email content that you expect the rule to match.
The Test Result highlights the extracted password.