Forensic Email Intelligence 2.2.472 Release Notes

FEI 2.2.472 is out with a long list of improvements! Here are the highlights :blush:

Sender Policy Framework (SPF)

FEI’s Domain Intel now includes SPF verification. This is often helpful when evaluating DMARC in light of DKIM and SPF. To make the process more seamless, candidate domains are automatically populated in Domain Intel View based on context (more on this below).

As with other sections in FEI, we have enriched the SPF results with descriptions from the relevant RFC. Here is an example:

Brand Indicators for Message Identification

FEI’s DNS Intel now includes BIMI records and is able to display the BIMI logo on file.

BIMI Record and Logo Lookup

IP and Domain List Based on Context

IP and Domain Intel Views now contain a list of contextual entities. For example, here is how the IP entry textbox now looks (no longer a simple textbox):

Trace View Improvements

Trace View has been improved to work around irregularities in some trace headers. Additionally, the data points displayed in Trace View can now be copied to the clipboard simply by clicking on them.

Supercache, Sender IP, Insight Improvements

We have added numerous new DKIM & ARC keys to Supercache, added new sender IP detection mechanisms based on additional MAPI properties and MIME headers, and added new Insights from our experience with and analysis of numerous phishing emails :flexed_biceps:t2:

This release contains quite a few additional improvements beyond what’s covered here. You can find a detailed list in the changelog below. The new version is available for download :lock: here when you are ready. Good hunting!

2 Likes