iOS Forensic Toolkit and Open Source
As a provider of mobile forensic tools, we at Elcomsoft strongly believe in giving back to the community. Our iOS Forensic Toolkit (EIFT) is a highly complex and powerful mobile acquisition tool, consisting of almost eighty sub-projects, many of which are open source. While we have benefited from the contributions of the community, we also believe that it’s time to contribute back to the open source community by publishing our changes to those projects as required by their permissive license.
👉 https://blog.elcomsoft.com/2023/05/ios-forensic-toolkit-and-open-source/
#EIFT #opensource #toolkit
As a provider of mobile forensic tools, we at Elcomsoft strongly believe in giving back to the community. Our iOS Forensic Toolkit (EIFT) is a highly complex and powerful mobile acquisition tool, consisting of almost eighty sub-projects, many of which are open source. While we have benefited from the contributions of the community, we also believe that it’s time to contribute back to the open source community by publishing our changes to those projects as required by their permissive license.
👉 https://blog.elcomsoft.com/2023/05/ios-forensic-toolkit-and-open-source/
#EIFT #opensource #toolkit
Elcomsoft Distributed Password Recovery 80% faster with NVIDIA GeForce RTX 40 Series graphics cards
Elcomsoft Distributed Password Recovery 80% faster with NVIDIA GeForce RTX 40 Series graphics cards We updated Elcomsoft Distributed Password Recovery with support for NVIDIA GeForce RTX 40 Series graphics cards, the company’s latest and greatest GPU series. In addition, Elcomsoft Distributed Password Recovery can now break NetNTLM v1/v2 and IKE PSK MD5 hashes.
👉 https://www.elcomsoft.com/news/835.html
#EDPR #Nvidia #password #GPU #AdaLovelace #RTX
Elcomsoft Distributed Password Recovery 80% faster with NVIDIA GeForce RTX 40 Series graphics cards We updated Elcomsoft Distributed Password Recovery with support for NVIDIA GeForce RTX 40 Series graphics cards, the company’s latest and greatest GPU series. In addition, Elcomsoft Distributed Password Recovery can now break NetNTLM v1/v2 and IKE PSK MD5 hashes.
👉 https://www.elcomsoft.com/news/835.html
#EDPR #Nvidia #password #GPU #AdaLovelace #RTX
👍1
NVIDIA RTX 40 Series Graphics Cards: The Faster and More Efficient Password Recovery Accelerators
Every three years, NVIDIA releases a new architecture used in their GeForce series graphics cards. Powered by Ada Lovelace, the new generation of GPUs delivers 80% better performance in password recovery compared to Ampere. While the new generation of NVIDIA graphics is faster and more efficient than Ampere, it also received a price hike. Is the update worth it for the forensic experts? Let’s try to find out.
👉 https://blog.elcomsoft.com/2023/05/nvidia-rtx-40-series-graphics-cards-the-faster-and-more-efficient-password-recovery-accelerators/
#EDPR #GPU #Nvidia #password #AdaLovelace
Every three years, NVIDIA releases a new architecture used in their GeForce series graphics cards. Powered by Ada Lovelace, the new generation of GPUs delivers 80% better performance in password recovery compared to Ampere. While the new generation of NVIDIA graphics is faster and more efficient than Ampere, it also received a price hike. Is the update worth it for the forensic experts? Let’s try to find out.
👉 https://blog.elcomsoft.com/2023/05/nvidia-rtx-40-series-graphics-cards-the-faster-and-more-efficient-password-recovery-accelerators/
#EDPR #GPU #Nvidia #password #AdaLovelace
Elcomsoft Wireless Security Auditor adds support for Intel Arc graphics cards
We updated Elcomsoft Wireless Security Auditor with support for Intel Arc family of graphics cards, Intel’s cost-efficient entry to discrete GPU market.
👉 https://www.elcomsoft.com/news/836.html
#EWSA #password #IntelArc #gpu #dfir
We updated Elcomsoft Wireless Security Auditor with support for Intel Arc family of graphics cards, Intel’s cost-efficient entry to discrete GPU market.
👉 https://www.elcomsoft.com/news/836.html
#EWSA #password #IntelArc #gpu #dfir
Breaking Wi-Fi Passwords with Intel Arc Graphics Cards
Intel has unveiled its latest lineup of dedicated graphics cards, driven by the powerful Intel Xe architecture. The Intel Arc series showcases impressive performance, rivaling mid-range offerings from competing brands, while maintaining an exceptional price-performance ratio that outperforms NVIDIA’s counterparts. In this article, we explore the potential of Intel Arc GPUs for forensic password recovery and delve into their performance capabilities, comparing them with both Intel’s built-in graphics and mid-range NVIDIA RTX boards.
👉 https://blog.elcomsoft.com/2023/05/breaking-wi-fi-passwords-with-intel-arc-graphics-cards/
#EWSA #IntelArc #Nvidia #wifi #password
Intel has unveiled its latest lineup of dedicated graphics cards, driven by the powerful Intel Xe architecture. The Intel Arc series showcases impressive performance, rivaling mid-range offerings from competing brands, while maintaining an exceptional price-performance ratio that outperforms NVIDIA’s counterparts. In this article, we explore the potential of Intel Arc GPUs for forensic password recovery and delve into their performance capabilities, comparing them with both Intel’s built-in graphics and mid-range NVIDIA RTX boards.
👉 https://blog.elcomsoft.com/2023/05/breaking-wi-fi-passwords-with-intel-arc-graphics-cards/
#EWSA #IntelArc #Nvidia #wifi #password
Volume Encryption in Synology DSM 7.2: LUKS with Questionable Key Management
Synology DSM 7.2 introduced a highly anticipated feature: volume-level encryption. This data protection mechanism works faster and has less limitations than shared folder encryption, which was the only encryption option supported in prior DSM releases. However, upon investigation, we determined that the implementation of the encryption key management mechanism for full-volume encryption fails to meet the expected standards of security for encrypted data for many users.
In this article, we will explore the current implementation of encrypted volumes in DSM 7.2 and shed light on the challenges posed by the existing key vault design.
👉 https://blog.elcomsoft.com/2023/06/volume-encryption-in-synology-dsm-7-2-luks-with-questionable-key-management/
#diskencryption #LUKS #NAS #Synology
Synology DSM 7.2 introduced a highly anticipated feature: volume-level encryption. This data protection mechanism works faster and has less limitations than shared folder encryption, which was the only encryption option supported in prior DSM releases. However, upon investigation, we determined that the implementation of the encryption key management mechanism for full-volume encryption fails to meet the expected standards of security for encrypted data for many users.
In this article, we will explore the current implementation of encrypted volumes in DSM 7.2 and shed light on the challenges posed by the existing key vault design.
👉 https://blog.elcomsoft.com/2023/06/volume-encryption-in-synology-dsm-7-2-luks-with-questionable-key-management/
#diskencryption #LUKS #NAS #Synology
Elcomsoft Lab: Benchmarking Password Recovery Speeds
In the realm of password recovery, benchmarking the speed of attacks holds significant importance. It is a customary practice to gauge the speed of attacks on various data formats using diverse hardware configurations. These tests yield results that are visually represented through graphs clearly demonstrating the performance of our products. However, these graphical representations merely scratch the surface of a much broader scope. Today, we delve deeper into the objectives and methodologies behind our password cracking speed tests.
👉 https://blog.elcomsoft.com/2023/06/elcomsoft-lab-benchmarking-password-recovery-speeds/
#benchmarks #EDPR #elcomsoftlab #GPU #acceleration #passwordrecovery
In the realm of password recovery, benchmarking the speed of attacks holds significant importance. It is a customary practice to gauge the speed of attacks on various data formats using diverse hardware configurations. These tests yield results that are visually represented through graphs clearly demonstrating the performance of our products. However, these graphical representations merely scratch the surface of a much broader scope. Today, we delve deeper into the objectives and methodologies behind our password cracking speed tests.
👉 https://blog.elcomsoft.com/2023/06/elcomsoft-lab-benchmarking-password-recovery-speeds/
#benchmarks #EDPR #elcomsoftlab #GPU #acceleration #passwordrecovery
What Forensic Vendors Don’t Like To Tell Their Customers. Part 1
The market of digital forensic tools is a tight one, just like any other niche market. The number of vendors is limited, especially when catering such specific needs as unlocking suspects’ handheld devices or breaking encryption. However, amidst the promises of cutting-edge technology and groundbreaking solutions, there are certain limitations that forensic vendors often don’t like to disclose to their customers. These limitations can have a significant impact on the applicability, effectiveness and reliability of the tools being offered.
👉 https://blog.elcomsoft.com/2023/06/what-forensic-vendors-dont-like-to-tell-their-customers-part-1/
#DFIR
The market of digital forensic tools is a tight one, just like any other niche market. The number of vendors is limited, especially when catering such specific needs as unlocking suspects’ handheld devices or breaking encryption. However, amidst the promises of cutting-edge technology and groundbreaking solutions, there are certain limitations that forensic vendors often don’t like to disclose to their customers. These limitations can have a significant impact on the applicability, effectiveness and reliability of the tools being offered.
👉 https://blog.elcomsoft.com/2023/06/what-forensic-vendors-dont-like-to-tell-their-customers-part-1/
#DFIR
Supporting Sage 50 Accounting 2023 and Sage 50 Accounts 2023
Advanced Sage Password Recovery (ASAPR) received an update, adding support for the latest versions of Sage 50 Accounting apps. The tool can now instantly recover or reset passwords to the latest versions of Sage 50 Accounting (Peachtree) 2023, Sage 50 Accounts 2023, and Sage 50 Accounting Canadian Edition (Simply Accounting) 2023.
👉 https://www.elcomsoft.com/news/837.html
#ASAPR #Sage50 #password #accounting
Advanced Sage Password Recovery (ASAPR) received an update, adding support for the latest versions of Sage 50 Accounting apps. The tool can now instantly recover or reset passwords to the latest versions of Sage 50 Accounting (Peachtree) 2023, Sage 50 Accounts 2023, and Sage 50 Accounting Canadian Edition (Simply Accounting) 2023.
👉 https://www.elcomsoft.com/news/837.html
#ASAPR #Sage50 #password #accounting
What Forensic Vendors Don’t Like To Tell Their Customers. Part 2
Year after year, the field of digital forensics and incident response (DFIR) presents us with new challenges. Various vendors from around the world are tirelessly striving to simplify and enhance the work of experts in this field, but there are some things you probably do not know about (or simply never paid attention to) that we discussed in the first part of these series. Today we’ll discuss some real cases to shed light onto some vendors’ shady practices.
👉 https://blog.elcomsoft.com/2023/06/what-forensic-vendors-dont-like-to-tell-their-customers-part-2/
#DFIR
Year after year, the field of digital forensics and incident response (DFIR) presents us with new challenges. Various vendors from around the world are tirelessly striving to simplify and enhance the work of experts in this field, but there are some things you probably do not know about (or simply never paid attention to) that we discussed in the first part of these series. Today we’ll discuss some real cases to shed light onto some vendors’ shady practices.
👉 https://blog.elcomsoft.com/2023/06/what-forensic-vendors-dont-like-to-tell-their-customers-part-2/
#DFIR
Open-Sourcing Raspberry Pi Software for Firewall Functionality: Secure Sideloading of Extraction Agent
We are excited to announce the release of an open-source software for Raspberry Pi 4 designed to provide firewall functionality for sideloading, signing, and verifying the extraction agent that delivers robust file system imaging and keychain decryption on a wide range of Apple devices. This development aims to address the growing security challenge faced by forensic experts when sideloading the extraction agent using regular and developer Apple accounts.
👉 https://blog.elcomsoft.com/2023/06/open-sourcing-raspberry-pi-software-for-firewall-functionality-secure-sideloading-of-extraction-agent/
#AppleID #EIFT #firewall #lowlevelextraction #Raspberry
We are excited to announce the release of an open-source software for Raspberry Pi 4 designed to provide firewall functionality for sideloading, signing, and verifying the extraction agent that delivers robust file system imaging and keychain decryption on a wide range of Apple devices. This development aims to address the growing security challenge faced by forensic experts when sideloading the extraction agent using regular and developer Apple accounts.
👉 https://blog.elcomsoft.com/2023/06/open-sourcing-raspberry-pi-software-for-firewall-functionality-secure-sideloading-of-extraction-agent/
#AppleID #EIFT #firewall #lowlevelextraction #Raspberry
checkm8 extraction for iOS 15.7.6 and 16.5
Elcomsoft iOS Forensic Toolkit 8.23 expands bootloader-level checkm8-based extraction support, adding support for the latest available iOS 15 and 16 builds. The newly supported OS versions include iOS/iPadOS/tvOS 15.7.6 and 16.5. Thanks to the expanded range of supported OS versions, the tool now supports the full range of of iOS 15 and 16 builds on checkm8-vulnerable devices.
👉 https://www.elcomsoft.com/news/838.html
#EIFT #checkm8 #iOS #dfir #mobileforensic
Elcomsoft iOS Forensic Toolkit 8.23 expands bootloader-level checkm8-based extraction support, adding support for the latest available iOS 15 and 16 builds. The newly supported OS versions include iOS/iPadOS/tvOS 15.7.6 and 16.5. Thanks to the expanded range of supported OS versions, the tool now supports the full range of of iOS 15 and 16 builds on checkm8-vulnerable devices.
👉 https://www.elcomsoft.com/news/838.html
#EIFT #checkm8 #iOS #dfir #mobileforensic
Low-level extraction supported for last-gen iPhones with iOS 16
Elcomsoft iOS Forensic Toolkit 8.30 and 7.90 expand low-level extraction support, now covering iOS 16.0 through 16.3.1 on latest-generation iPhone and iPad models. For the first time ever, full file system extraction becomes available on the iPhone 14 and 14 Pro range of devices and other iPhone and iPad models built with the A12 and newer chips, effectively covering the iPhone Xr/Xs through iPhone 14/Pro range and many corresponding iPads including those based on Apple M1 and M2 chips.
👉 https://www.elcomsoft.com/news/839.html
#iphone #iOS #ipad #EIFT #mobileforensic #dataextraction #ElcomsoftAgent #agent
Elcomsoft iOS Forensic Toolkit 8.30 and 7.90 expand low-level extraction support, now covering iOS 16.0 through 16.3.1 on latest-generation iPhone and iPad models. For the first time ever, full file system extraction becomes available on the iPhone 14 and 14 Pro range of devices and other iPhone and iPad models built with the A12 and newer chips, effectively covering the iPhone Xr/Xs through iPhone 14/Pro range and many corresponding iPads including those based on Apple M1 and M2 chips.
👉 https://www.elcomsoft.com/news/839.html
#iphone #iOS #ipad #EIFT #mobileforensic #dataextraction #ElcomsoftAgent #agent
Low-level Extraction for iOS 16 with iPhone 14/14 Pro Support
A while ago, we introduced an innovative mechanism that enabled access to parts of the file system for latest-generation Apple devices. The process we called “partial extraction” relied on a weak exploit that, at the time, did not allow a full sandbox escape. We’ve been working to improve the process, slowly lifting the “partial” tag from iOS 15 devices. Today, we are introducing a new, enhanced low-level extraction mechanism that enables full file system extraction for the iOS 16 through 16.3.1 on all devices based on Apple A12 Bionic and newer chips.
👉 https://blog.elcomsoft.com/2023/06/low-level-extraction-for-ios-16-with-iphone-14-14-pro-support/
#agent #EIFT #Elcomsoft #iOS #iOS16 #dfir #mobileforensics
A while ago, we introduced an innovative mechanism that enabled access to parts of the file system for latest-generation Apple devices. The process we called “partial extraction” relied on a weak exploit that, at the time, did not allow a full sandbox escape. We’ve been working to improve the process, slowly lifting the “partial” tag from iOS 15 devices. Today, we are introducing a new, enhanced low-level extraction mechanism that enables full file system extraction for the iOS 16 through 16.3.1 on all devices based on Apple A12 Bionic and newer chips.
👉 https://blog.elcomsoft.com/2023/06/low-level-extraction-for-ios-16-with-iphone-14-14-pro-support/
#agent #EIFT #Elcomsoft #iOS #iOS16 #dfir #mobileforensics
Safeguarding Digital Evidence: Don’t Shut It Down!
In the digital age, where information is a precious commodity and evidence is increasingly stored in virtual realms, the importance of preserving digital evidence has become a must in modern investigative practices. However, the criticality of proper handling is often overlooked, potentially jeopardizing access to crucial data during an investigation. In this article, we will once again highlight the importance of meticulous preservation techniques and live session analysis to prevent the loss of digital evidence.
👉 https://blog.elcomsoft.com/2023/06/safeguarding-digital-evidence-dont-shut-it-down/
#DFIR #diskencryption #livesystemanalysis
In the digital age, where information is a precious commodity and evidence is increasingly stored in virtual realms, the importance of preserving digital evidence has become a must in modern investigative practices. However, the criticality of proper handling is often overlooked, potentially jeopardizing access to crucial data during an investigation. In this article, we will once again highlight the importance of meticulous preservation techniques and live session analysis to prevent the loss of digital evidence.
👉 https://blog.elcomsoft.com/2023/06/safeguarding-digital-evidence-dont-shut-it-down/
#DFIR #diskencryption #livesystemanalysis
Comprehensive low-level extraction for last-gen iPhones with iOS 16.4
Elcomsoft iOS Forensic Toolkit 8.31 and 7.91 are once again pushing the boundaries of what is possible by enabling full low-level extraction support for iOS 16 devices up to and including iOS/iPadOS 16.4. Supported models include many recent and latest-generation iPhone and iPad models based on the Apple A12 Bionic and newer chips. For the first time ever, full file system extraction and keychain decryption become available on the iPhone 14 and 14 Pro range of devices, as well as many corresponding iPads including those based on Apple M1 and M2 chips.
👉 https://www.elcomsoft.com/news/840.html
#agent #EIFT #extractionagent #keychain #lowlevelextraction #ios16
Elcomsoft iOS Forensic Toolkit 8.31 and 7.91 are once again pushing the boundaries of what is possible by enabling full low-level extraction support for iOS 16 devices up to and including iOS/iPadOS 16.4. Supported models include many recent and latest-generation iPhone and iPad models based on the Apple A12 Bionic and newer chips. For the first time ever, full file system extraction and keychain decryption become available on the iPhone 14 and 14 Pro range of devices, as well as many corresponding iPads including those based on Apple M1 and M2 chips.
👉 https://www.elcomsoft.com/news/840.html
#agent #EIFT #extractionagent #keychain #lowlevelextraction #ios16
Pushing the Boundaries: Low-Level Extraction of iOS 16.4 with Keychain Decryption
When it comes to iOS data acquisition, Elcomsoft iOS Forensic Toolkit stands head and shoulders above the competition. With its cutting-edge features and unmatched capabilities, the Toolkit has become the go-to software for forensic investigations on iOS devices. The recent update expanded the capabilities of the tool’s low-level extraction agent, adding keychain decryption support on Apple’s newest devices running iOS 16.0 through 16.4.
👉 https://blog.elcomsoft.com/2023/07/pushing-the-boundaries-low-level-extraction-of-ios-16-4-with-keychain-decryption/
#agent #EIFT #extractionagent #keychain #lowlevelextraction #ios16
When it comes to iOS data acquisition, Elcomsoft iOS Forensic Toolkit stands head and shoulders above the competition. With its cutting-edge features and unmatched capabilities, the Toolkit has become the go-to software for forensic investigations on iOS devices. The recent update expanded the capabilities of the tool’s low-level extraction agent, adding keychain decryption support on Apple’s newest devices running iOS 16.0 through 16.4.
👉 https://blog.elcomsoft.com/2023/07/pushing-the-boundaries-low-level-extraction-of-ios-16-4-with-keychain-decryption/
#agent #EIFT #extractionagent #keychain #lowlevelextraction #ios16
👍1
Accelerating digital forensics: Elcomsoft System Recovery boosts efficiency in forensic analysis
Elcomsoft System Recovery, a bootable forensic analysis tool for Windows, receives an update that introduces several new features designed to enhance efficiency and simplicity during in-field investigations. The updated tool enables the collection, extraction, and analysis of essential artifacts available on the computers being investigated.
👉 https://www.elcomsoft.com/news/841.html
#ESR #Windows #DFIR #digitalforensics
Elcomsoft System Recovery, a bootable forensic analysis tool for Windows, receives an update that introduces several new features designed to enhance efficiency and simplicity during in-field investigations. The updated tool enables the collection, extraction, and analysis of essential artifacts available on the computers being investigated.
👉 https://www.elcomsoft.com/news/841.html
#ESR #Windows #DFIR #digitalforensics
Accelerating Computer Forensics: Elcomsoft System Recovery and the Low-Hanging Fruit Strategy
In the world of digital investigations, the sheer volume of data and the challenge of identifying valuable evidence can be overwhelming. Often, investigators find themselves faced with the need for optimization — the ability to quickly and seamlessly identify what is valuable and requires further examination. We aim to fulfill this need by introducing a new forensic toolkit in Elcomsoft System Recovery, a powerful bootable tool designed to speed up investigations, quickly identify and collect digital evidence right on the spot. 🔥
👉 https://blog.elcomsoft.com/2023/07/accelerating-computer-forensics-elcomsoft-system-recovery-and-the-low-hanging-fruit-strategy/
#ESR #Windows #DFIR #digitalforensics
In the world of digital investigations, the sheer volume of data and the challenge of identifying valuable evidence can be overwhelming. Often, investigators find themselves faced with the need for optimization — the ability to quickly and seamlessly identify what is valuable and requires further examination. We aim to fulfill this need by introducing a new forensic toolkit in Elcomsoft System Recovery, a powerful bootable tool designed to speed up investigations, quickly identify and collect digital evidence right on the spot. 🔥
👉 https://blog.elcomsoft.com/2023/07/accelerating-computer-forensics-elcomsoft-system-recovery-and-the-low-hanging-fruit-strategy/
#ESR #Windows #DFIR #digitalforensics
iOS Forensic Toolkit Tips & Tricks
For forensic experts dealing with mobile devices, having a reliable and efficient forensic solution is crucial. Elcomsoft iOS Forensic Toolkit is an all-in-one software that aids in extracting data from iOS devices, yet it is still far away from being a one-button solution that many experts keep dreaming of. In this article, we will walk you through the preparation and installation steps, list additional hardware environments, and provide instructions on how to use the toolkit safely and effectively.
👉🏻 https://blog.elcomsoft.com/2023/07/ios-forensic-toolkit-tips-tricks/
#EIFT #tipsandtricks #dfir
For forensic experts dealing with mobile devices, having a reliable and efficient forensic solution is crucial. Elcomsoft iOS Forensic Toolkit is an all-in-one software that aids in extracting data from iOS devices, yet it is still far away from being a one-button solution that many experts keep dreaming of. In this article, we will walk you through the preparation and installation steps, list additional hardware environments, and provide instructions on how to use the toolkit safely and effectively.
👉🏻 https://blog.elcomsoft.com/2023/07/ios-forensic-toolkit-tips-tricks/
#EIFT #tipsandtricks #dfir
iOS Device Acquisition: Installing the Extraction Agent
Acquiring data from Apple devices, specifically those not susceptible to bootloader exploits (A12 Bionic chips and newer), requires the use of agent-based extraction. This method allows forensic experts to obtain the complete file system from the device, maximizing the amount of data and evidence they can gather using the iOS Forensic Toolkit. In this article, we will discuss some nuances of agent-based iOS device acquisition.
👉🏻 https://blog.elcomsoft.com/2023/07/ios-device-acquisition-installing-the-extraction-agent/
#agent #AppleDeveloperProgram #EIFT #ElcomsoftiOSForensicToolkit #dfir #tipsandtricks #mobileforensics
Acquiring data from Apple devices, specifically those not susceptible to bootloader exploits (A12 Bionic chips and newer), requires the use of agent-based extraction. This method allows forensic experts to obtain the complete file system from the device, maximizing the amount of data and evidence they can gather using the iOS Forensic Toolkit. In this article, we will discuss some nuances of agent-based iOS device acquisition.
👉🏻 https://blog.elcomsoft.com/2023/07/ios-device-acquisition-installing-the-extraction-agent/
#agent #AppleDeveloperProgram #EIFT #ElcomsoftiOSForensicToolkit #dfir #tipsandtricks #mobileforensics
❤1👍1