ElcomSoft Phone Breaker 10 adds device-based iCloud authentication
Elcomsoft Phone Breaker 10 adds the ability to use a trusted iOS device to authenticate iCloud extraction. Every type of data becomes extractable including end-to-end encrypted data, and no password is required.
👉 https://www.elcomsoft.com/news/795.html
#ios #dfir #cloudforensics #2fa #cloudsecurity
Elcomsoft Phone Breaker 10 adds the ability to use a trusted iOS device to authenticate iCloud extraction. Every type of data becomes extractable including end-to-end encrypted data, and no password is required.
👉 https://www.elcomsoft.com/news/795.html
#ios #dfir #cloudforensics #2fa #cloudsecurity
iCloud Extractions Without Passwords and Tokens: When a Trusted Device is Enough
A lot of folks (and even some law enforcement experts) are looking for a one-click solution for mobile extractions and data decryption. Unfortunately, in today’s day and age there are no ‘silver bullet’ solutions. In the days of high-tech mobile devices and end-to-end encryption one must clearly understand the available options, and plan their actions accordingly. The time of ‘snake oil’ exploits is long gone. The modern world of mobile forensics is complex, and your actions will depend on a lot of factors. Today, we’re going to make your life a notch more complex by introducing a new iCloud authentication option you’ve never heard of before.
👉 https://blog.elcomsoft.com/2021/10/icloud-extractions-without-passwords-and-tokens-when-a-trusted-device-is-enough/
#ios #icloud #2fa #dfir #cloudsecurity #cloudforensics
A lot of folks (and even some law enforcement experts) are looking for a one-click solution for mobile extractions and data decryption. Unfortunately, in today’s day and age there are no ‘silver bullet’ solutions. In the days of high-tech mobile devices and end-to-end encryption one must clearly understand the available options, and plan their actions accordingly. The time of ‘snake oil’ exploits is long gone. The modern world of mobile forensics is complex, and your actions will depend on a lot of factors. Today, we’re going to make your life a notch more complex by introducing a new iCloud authentication option you’ve never heard of before.
👉 https://blog.elcomsoft.com/2021/10/icloud-extractions-without-passwords-and-tokens-when-a-trusted-device-is-enough/
#ios #icloud #2fa #dfir #cloudsecurity #cloudforensics
Using a Trusted Device for iCloud Authentication
To perform an iCloud extraction, a valid password is generally required, followed by solving the two-factor authentication challenge. If the user’s iPhone is everything that you have, the iCloud password may not be available. By using a trusted device, one can gain unrestricted access to everything that is stored in the user’s iCloud account. This article gives a comprehensive walkthrough on this alternative authentication method.
👉 https://blog.elcomsoft.com/2021/10/using-a-trusted-device-for-icloud-authentication/
#dfir #ios #cloudsecurity #cloudforensics
To perform an iCloud extraction, a valid password is generally required, followed by solving the two-factor authentication challenge. If the user’s iPhone is everything that you have, the iCloud password may not be available. By using a trusted device, one can gain unrestricted access to everything that is stored in the user’s iCloud account. This article gives a comprehensive walkthrough on this alternative authentication method.
👉 https://blog.elcomsoft.com/2021/10/using-a-trusted-device-for-icloud-authentication/
#dfir #ios #cloudsecurity #cloudforensics
Protecting Linux and NAS Devices: LUKS, eCryptFS and Native ZFS Encryption Compared
Many Linux distributions including those used in off the shelf Network Attached Storage (NAS) devices have the ability to protect users’ data with one or more types of encryption. Full-disk and folder-based encryption options are commonly available, each with its own set of pros and contras. The new native ZFS encryption made available in OpenZFS 2.0 is designed to combine the benefits of full-disk and folder-based encryption without the associated drawbacks. In this article, we’ll compare the strengths and weaknesses of LUKS, eCryptFS and ZFS encryption.
👉 https://blog.elcomsoft.com/2021/11/protecting-linux-and-nas-devices-luks-ecryptfs-and-native-zfs-encryption-compared/
#encryption #linux #luks #ecryptfs #nas #zfs
Many Linux distributions including those used in off the shelf Network Attached Storage (NAS) devices have the ability to protect users’ data with one or more types of encryption. Full-disk and folder-based encryption options are commonly available, each with its own set of pros and contras. The new native ZFS encryption made available in OpenZFS 2.0 is designed to combine the benefits of full-disk and folder-based encryption without the associated drawbacks. In this article, we’ll compare the strengths and weaknesses of LUKS, eCryptFS and ZFS encryption.
👉 https://blog.elcomsoft.com/2021/11/protecting-linux-and-nas-devices-luks-ecryptfs-and-native-zfs-encryption-compared/
#encryption #linux #luks #ecryptfs #nas #zfs
Digital Triage Forensics: Write-Blocking, Verifiable Disk Imaging
When accessing a locked system during an in-field investigation, speed is often the most important factor. However, maintaining digital chain of custody is just as if not more important in order to produce court admissible evidence. We are introducing new features in Elcomsoft System Recovery, our forensic triage tool, to help establish and maintain digital chain of custody throughout the investigation.
👉 https://blog.elcomsoft.com/2021/11/digital-triage-forensics-write-blocking-verifiable-disk-imaging/
#passwords #dfir #cybersecurity #datasecurity #passwordrecovery #digitalforensics
When accessing a locked system during an in-field investigation, speed is often the most important factor. However, maintaining digital chain of custody is just as if not more important in order to produce court admissible evidence. We are introducing new features in Elcomsoft System Recovery, our forensic triage tool, to help establish and maintain digital chain of custody throughout the investigation.
👉 https://blog.elcomsoft.com/2021/11/digital-triage-forensics-write-blocking-verifiable-disk-imaging/
#passwords #dfir #cybersecurity #datasecurity #passwordrecovery #digitalforensics
The Five Ways to Recover iPhone Deleted Data
iOS security model offers very are few possibilities to recover anything unless you have a backup, either local or one from the cloud. There are also tricks allowing to recover some bits and pieces even if you don’t. In this article we’ll talk about what you can and what you cannot recover in modern iOS devices.
Before we begin, I highly recommend reading our previous article aimed at demystifying bogus claims made by some unscrupulous vendors of data recovery tools: The iPhone Data Recovery Myth: What You Can and Cannot Recover. Below are the types of data you can actually recover.
👉 https://blog.elcomsoft.com/2021/11/the-five-ways-to-recover-iphone-deleted-data/
#ios #icloud #iphone #backup #syncedfiles #deletedrecords
iOS security model offers very are few possibilities to recover anything unless you have a backup, either local or one from the cloud. There are also tricks allowing to recover some bits and pieces even if you don’t. In this article we’ll talk about what you can and what you cannot recover in modern iOS devices.
Before we begin, I highly recommend reading our previous article aimed at demystifying bogus claims made by some unscrupulous vendors of data recovery tools: The iPhone Data Recovery Myth: What You Can and Cannot Recover. Below are the types of data you can actually recover.
👉 https://blog.elcomsoft.com/2021/11/the-five-ways-to-recover-iphone-deleted-data/
#ios #icloud #iphone #backup #syncedfiles #deletedrecords
Apple Watch Forensics: More on Adapters
If you are doing Apple Watch forensics, I’ve got some bad news for you. The latest model of Apple Watch, the Series 7, does not have a hidden diagnostics port anymore, which was replaced with a wireless 60.5GHz module (and the corresponding dock, which is nowhere to be found). What does that mean for the mobile forensics, and does it make the extraction more difficult? Let’s shed some light on it.
👉 https://blog.elcomsoft.com/2021/11/apple-watch-forensics-more-on-adapters/
#applewatch #ios #cloudsecurity #cloudforensics
If you are doing Apple Watch forensics, I’ve got some bad news for you. The latest model of Apple Watch, the Series 7, does not have a hidden diagnostics port anymore, which was replaced with a wireless 60.5GHz module (and the corresponding dock, which is nowhere to be found). What does that mean for the mobile forensics, and does it make the extraction more difficult? Let’s shed some light on it.
👉 https://blog.elcomsoft.com/2021/11/apple-watch-forensics-more-on-adapters/
#applewatch #ios #cloudsecurity #cloudforensics
iPhone Acquisition Methods Compared
Our mobile acquisition tools, Elcomsoft iOS Forensic Toolkit and Elcomsoft Phone Breaker, support a number of different extraction options. While many of our readers know the differences between logical and physical acquisition in general better than most, there are some things in our software making the logical/physical dilemma somewhat different. In this article, we laid out the differences between the extraction methods as implemented in our tools.
👉 https://blog.elcomsoft.com/2021/11/iphone-acquisition-methods-compared/
#dfir #mobileforensics #checkm8
Our mobile acquisition tools, Elcomsoft iOS Forensic Toolkit and Elcomsoft Phone Breaker, support a number of different extraction options. While many of our readers know the differences between logical and physical acquisition in general better than most, there are some things in our software making the logical/physical dilemma somewhat different. In this article, we laid out the differences between the extraction methods as implemented in our tools.
👉 https://blog.elcomsoft.com/2021/11/iphone-acquisition-methods-compared/
#dfir #mobileforensics #checkm8
checkm8, checkra1n and USB hubs
If you ever used the checkra1n jailbreak or the checkm8 acquisition method available in some mobile forensic products like iOS Forensic Toolkit, you know that the trickiest parts of the process are the first two: entering DFU, and using the exploit itself. Even if you have the right cables and enough experience, sometimes you may still bump into a weird issue or two. The device may not enter DFU whatever you do, or the exploit fails. How can you increase your success rate?
👉 https://blog.elcomsoft.com/2021/11/checkm8-checkra1n-and-usb-hubs/
#checkm8 #checkra1n #mobileforensics
If you ever used the checkra1n jailbreak or the checkm8 acquisition method available in some mobile forensic products like iOS Forensic Toolkit, you know that the trickiest parts of the process are the first two: entering DFU, and using the exploit itself. Even if you have the right cables and enough experience, sometimes you may still bump into a weird issue or two. The device may not enter DFU whatever you do, or the exploit fails. How can you increase your success rate?
👉 https://blog.elcomsoft.com/2021/11/checkm8-checkra1n-and-usb-hubs/
#checkm8 #checkra1n #mobileforensics
iOS Forensic Toolkit 8.0 beta 2 brings forensically-sound checkm8 extraction and iOS 15 support
The second beta of Elcomsoft iOS Forensic Toolkit 8.0 for Mac is released, bringing forensically sound checkm8 extraction to iOS 15 devices and delivering a host of under-the-hood improvements and enhancements.
👉 https://www.elcomsoft.com/news/797.html
#checkm8 #ios15 #dfir #mobileforensics
The second beta of Elcomsoft iOS Forensic Toolkit 8.0 for Mac is released, bringing forensically sound checkm8 extraction to iOS 15 devices and delivering a host of under-the-hood improvements and enhancements.
👉 https://www.elcomsoft.com/news/797.html
#checkm8 #ios15 #dfir #mobileforensics
How to Use iOS Forensic Toolkit 8.0 b2 to Perform Forensically Sound Extraction of iPhone 5s, 6, 6s and SE
The second beta of iOS Forensic Toolkit 8.0 has arrived, offering repeatable, verifiable extraction for a limited range of iOS devices. The new release introduces a brand-new user interface, which differs significantly from the selection-driven console we’ve been using for the past several years. This article describes the new workflow for performing forensically sound extractions with iOS Forensic Toolkit 8.0 beta2.
👉 https://blog.elcomsoft.com/2021/11/how-to-use-ios-forensic-toolkit-8-0-b2-to-perform-forensically-sound-extraction-of-iphone-5s-6-6s-and-se/
#ios15 #checkm8 #dfir #mobileforensics
The second beta of iOS Forensic Toolkit 8.0 has arrived, offering repeatable, verifiable extraction for a limited range of iOS devices. The new release introduces a brand-new user interface, which differs significantly from the selection-driven console we’ve been using for the past several years. This article describes the new workflow for performing forensically sound extractions with iOS Forensic Toolkit 8.0 beta2.
👉 https://blog.elcomsoft.com/2021/11/how-to-use-ios-forensic-toolkit-8-0-b2-to-perform-forensically-sound-extraction-of-iphone-5s-6-6s-and-se/
#ios15 #checkm8 #dfir #mobileforensics
Forensically Sound Extraction for iPhone 5s, 6, 6s and SE
Half a year ago, we started a closed beta-testing of a revolutionary new build of iOS Forensic Toolkit. Using the checkm8 exploit, the first beta delivered forensically sound file system extraction for a large number of Apple devices. Today, we are rolling out the new, significantly improved second beta of the tool that delivers repeatable, forensically sound extractions based on the checkm8 exploit.
👉 https://blog.elcomsoft.com/2021/11/forensically-sound-extraction-for-iphone-5s-6-6s-and-se/
#ios15 #checkm8 #mobileforensics #dfi
Half a year ago, we started a closed beta-testing of a revolutionary new build of iOS Forensic Toolkit. Using the checkm8 exploit, the first beta delivered forensically sound file system extraction for a large number of Apple devices. Today, we are rolling out the new, significantly improved second beta of the tool that delivers repeatable, forensically sound extractions based on the checkm8 exploit.
👉 https://blog.elcomsoft.com/2021/11/forensically-sound-extraction-for-iphone-5s-6-6s-and-se/
#ios15 #checkm8 #mobileforensics #dfi
Worthless Security Practices
Many security practices still widely accepted today are things of the past. Many of them made sense at the time of short passwords and unrestricted access to workplaces, while some were learned from TV shows with “Russian hackers” breaking Pentagon. In this article we’ll sort it out.
👉 https://blog.elcomsoft.com/2021/12/worthless-security-practices/
#passwords #itsecurity
Many security practices still widely accepted today are things of the past. Many of them made sense at the time of short passwords and unrestricted access to workplaces, while some were learned from TV shows with “Russian hackers” breaking Pentagon. In this article we’ll sort it out.
👉 https://blog.elcomsoft.com/2021/12/worthless-security-practices/
#passwords #itsecurity