Elcomsoft
547 subscribers
573 photos
1 video
1 file
458 links
Elcomsoft official channel is the place where you can find news, events and the latest updates of our products.

website: elcomsoft.com
twitter: twitter.com/elcomsoft
youtube: youtube.com/c/ElcomsoftCompany
blog: blog.elcomsoft.com
t.me/elcomsoftru
Download Telegram
Elcomsoft iOS Forensic Toolkit 8.0 beta 4: forensically sound checkm8 extraction of iPhone 8, 8 Plus and iPhone X

The fourth beta of Elcomsoft iOS Forensic Toolkit 8.0 for Mac introduces forensically sound checkm8 extraction of iPhone 8, 8 Plus, and iPhone X devices running iOS 11.0 through 15.3 (restrictions apply to iOS 14 and 15 extractions).

👉 https://www.elcomsoft.com/news/806.html

#iphone #eift #mobileforensics #dfir
iPhone X, DFU mode and checkm8

In order to use the checkm8-based acquisition, the device must be placed into DFU (Device Firmware Update) mode first, and this is the trickiest part of the process. There is no software way to enter DFU, so you have to do it manually. This article describes how to do it properly for the iPhone 8, iPhone 8 Plus and iPhone X that are now supported by Elcomsoft iOS Forensic Toolkit.

👉 https://blog.elcomsoft.com/2022/02/iphone-x-dfu-mode-and-checkm8/

#dfir #DFU #mobileforensics #iphoneX #checkm8
checkm8 Extraction of iPhone 8, 8 Plus and iPhone X

Last month, we released the tool and published the guide on forensically sound extraction of the iPhone 7 generation of devices. Today, we have added support for the iPhone 8, 8 Plus, and iPhone X, making iOS Forensic Toolkit the first and only forensically sound iPhone extraction tool delivering repeatable and verifiable results for all 64-bit iPhone devices that can be exploited with checkm8. While the previous publication talks about the details on acquiring the iPhone 7, there are some things different when it comes to the last generation of checkm8-supported devices.

👉 https://blog.elcomsoft.com/2022/02/checkm8-extraction-of-iphone-8-8-plus-and-iphone-x/

#dfir #mobileforensics #checkm8 #eift #iphone8 #iphoneX
Elcomsoft iOS Forensic Toolkit 8.0 beta 5: forensically sound checkm8 extraction of Apple Watch 3

The fifth beta of Elcomsoft iOS Forensic Toolkit 8.0 for Mac brings forensically sound, checkm8-based extraction of Apple Watch Series 3. The low-level extraction helps access crucial evidence stored on the Watch without altering any of the data.

👉 https://www.elcomsoft.com/news/807.html

#eift #watchOS #ios15 #mobileforensics #dfir
checkm8 Extraction of Apple Watch Series 3

The fifth beta of iOS Forensic Toolkit 8 for Mac introduces forensically sound, checkm8-based extraction of Apple Watch Series 3. How to connect the watch to the computer, what data is available and how to apply the exploit? Check out this comprehensive guide!

👉 https://blog.elcomsoft.com/2022/02/checkm8-extraction-of-apple-watch-series-3/

#applewatch #watchOS #eift #mobileforensics #dfir
Apple Mobile Devices and iOS Acquisition Methods

Do you have to know which SoC a certain Apple device is based on? If you are working in mobile forensics, the answer is positive. Along with the version of iOS/watchOS/iPadOS, the SoC is one of the deciding factors that affects the data extraction paths available in each case. Read this article to better understand your options for each generation of Apple platforms.

👉 https://blog.elcomsoft.com/2022/02/apple-mobile-devices-and-ios-acquisition-methods/

#iphone #mobileforensics #dfir
Dude, Where Are My Messages?

Cloud backups are an invaluable source of information whether you download them from the user’s iCloud account or obtain directly from Apple. But why some iCloud backups miss essential bits and pieces of information such as text messages, particularly iMessages? The answer is “end-to-end encryption”, and there’s more to it than just backups.

👉 https://blog.elcomsoft.com/2022/02/dude-where-are-my-messages/

#sms #imessage #icloud #dfir #mobileforensics #phonebreaker
GPU Acceleration On The Cheap: Using Affordable Video Cards to Break Passwords Faster

Most password protection methods rely on multiple rounds of hash iterations to slow down brute-force attacks. Even the fastest processors choke when trying to break a reasonably strong password. Video cards can be used to speed up the recovery with GPU acceleration, yet the GPU market is currently overheated, and most high-end video cards are severely overpriced. Today, we’ll test a bunch of low-end video cards and compare their price/performance ratio.

👉 https://blog.elcomsoft.com/2022/02/gpu-acceleration-on-the-cheap-using-affordable-video-cards-to-break-passwords-faster/

#amd #cuda #edpr #gpu #intel #passwordcracking #passwordrecovery
https://www.forbes.com/sites/thomasbrewster/2022/03/04/russians-escaping-putins-repression-urged-to-wipe-their-phones/

Assistance from both inside and outside the country is being offered to Russians in fear of phone searches. Vladimir Katalov, the Moscow-based owner of phone forensics company Elcomsoft, which works with law enforcement to compile data on criminal suspects, says he doesn’t ask what nationality anyone is, but he has noted an increase in the number of people asking how to keep their data safe in an “emergency situation, whatever that is.”

His main advice, he said, is for people to not have their main device with them if they think there’s a chance it will be seized. “Get a spare phone with minimum data, probably just contacts,” he said. “Even better, get a spare SIM card, as your main one could be used to get an authentication code to log into your account.”
Elcomsoft Phone Viewer 5.33 updated with Windows 11, macOS 12 Monterey support

Elcomsoft Phone Viewer for Mac 5.33 is updated to support macOS 12 Monterey, while the Windows edition of the tool adds support for Windows 11. In addition, the tool fixes several reported issues related to data export.

👉 https://www.elcomsoft.com/news/808.html

#dfir #mobileforensics #epv #windows11 #macos12
Elcomsoft System Recovery 8.20 adds Windows 11 support, bootable triage tools

Elcomsoft System Recovery, a digital field triage tool, is updated to support Windows 11 and Windows Server 2022 installations and adds a host of bootable forensic triage tools to help experts analyze computer systems in the field.

👉 https://www.elcomsoft.com/news/809.html

📝 Release Notes

#esr #forensictriage #windows11 #dfir #digitalforensics
Simplifying Digital Triage with Bootable Forensic Tools

Elcomsoft System Recovery speeds up in-field investigations by providing experts with a forensic tool they can use by booting a PC from a dedicated USB media. The recent update extended the functionality of the tool by adding three new forensic tools.

👉 https://blog.elcomsoft.com/2022/03/simplifying-digital-triage-with-bootable-forensic-tools/

#esr #dfir #computerforensics #forensictriage
Windows 11 TPM Protection, Passwordless Sign-In and What You Can Do About Them

Windows 11 introduces increased account protection, passwordless sign-in and hardware-based security. What has been changed compared to Windows 10, how these changes affect forensic extraction and analysis, and to what extent can one overcome the TPM-based protection? Read along to find out!

👉 https://blog.elcomsoft.com/2022/03/windows-11-tpm-protection-passwordless-sign-in-and-what-you-can-do-about-them/

#esr #bitlocker #microsoftaccount #systemrecovery #tpm