Elcomsoft
551 subscribers
570 photos
1 video
1 file
455 links
Elcomsoft official channel is the place where you can find news, events and the latest updates of our products.

website: elcomsoft.com
twitter: twitter.com/elcomsoft
youtube: youtube.com/c/ElcomsoftCompany
blog: blog.elcomsoft.com
t.me/elcomsoftru
Download Telegram
Low-level extraction supported for last-gen iPhones with iOS 16

Elcomsoft iOS Forensic Toolkit 8.30 and 7.90 expand low-level extraction support, now covering iOS 16.0 through 16.3.1 on latest-generation iPhone and iPad models. For the first time ever, full file system extraction becomes available on the iPhone 14 and 14 Pro range of devices and other iPhone and iPad models built with the A12 and newer chips, effectively covering the iPhone Xr/Xs through iPhone 14/Pro range and many corresponding iPads including those based on Apple M1 and M2 chips.

๐Ÿ‘‰ https://www.elcomsoft.com/news/839.html

#iphone #iOS #ipad #EIFT #mobileforensic #dataextraction #ElcomsoftAgent #agent
Low-level Extraction for iOS 16 with iPhone 14/14 Pro Support

A while ago, we introduced an innovative mechanism that enabled access to parts of the file system for latest-generation Apple devices. The process we called โ€œpartial extractionโ€ relied on a weak exploit that, at the time, did not allow a full sandbox escape. Weโ€™ve been working to improve the process, slowly lifting the โ€œpartialโ€ tag from iOS 15 devices. Today, we are introducing a new, enhanced low-level extraction mechanism that enables full file system extraction for the iOS 16 through 16.3.1 on all devices based on Apple A12 Bionic and newer chips.

๐Ÿ‘‰ https://blog.elcomsoft.com/2023/06/low-level-extraction-for-ios-16-with-iphone-14-14-pro-support/

#agent #EIFT #Elcomsoft #iOS #iOS16 #dfir #mobileforensics
Safeguarding Digital Evidence: Donโ€™t Shut It Down!

In the digital age, where information is a precious commodity and evidence is increasingly stored in virtual realms, the importance of preserving digital evidence has become a must in modern investigative practices. However, the criticality of proper handling is often overlooked, potentially jeopardizing access to crucial data during an investigation. In this article, we will once again highlight the importance of meticulous preservation techniques and live session analysis to prevent the loss of digital evidence.

๐Ÿ‘‰ https://blog.elcomsoft.com/2023/06/safeguarding-digital-evidence-dont-shut-it-down/

#DFIR #diskencryption #livesystemanalysis
Comprehensive low-level extraction for last-gen iPhones with iOS 16.4

Elcomsoft iOS Forensic Toolkit 8.31 and 7.91 are once again pushing the boundaries of what is possible by enabling full low-level extraction support for iOS 16 devices up to and including iOS/iPadOS 16.4. Supported models include many recent and latest-generation iPhone and iPad models based on the Apple A12 Bionic and newer chips. For the first time ever, full file system extraction and keychain decryption become available on the iPhone 14 and 14 Pro range of devices, as well as many corresponding iPads including those based on Apple M1 and M2 chips.

๐Ÿ‘‰ https://www.elcomsoft.com/news/840.html

#agent #EIFT #extractionagent #keychain #lowlevelextraction #ios16
Pushing the Boundaries: Low-Level Extraction of iOS 16.4 with Keychain Decryption

When it comes to iOS data acquisition, Elcomsoft iOS Forensic Toolkit stands head and shoulders above the competition. With its cutting-edge features and unmatched capabilities, the Toolkit has become the go-to software for forensic investigations on iOS devices. The recent update expanded the capabilities of the toolโ€™s low-level extraction agent, adding keychain decryption support on Appleโ€™s newest devices running iOS 16.0 through 16.4.

๐Ÿ‘‰ https://blog.elcomsoft.com/2023/07/pushing-the-boundaries-low-level-extraction-of-ios-16-4-with-keychain-decryption/

#agent #EIFT #extractionagent #keychain #lowlevelextraction #ios16
๐Ÿ‘1
Accelerating digital forensics: Elcomsoft System Recovery boosts efficiency in forensic analysis

Elcomsoft System Recovery, a bootable forensic analysis tool for Windows, receives an update that introduces several new features designed to enhance efficiency and simplicity during in-field investigations. The updated tool enables the collection, extraction, and analysis of essential artifacts available on the computers being investigated.

๐Ÿ‘‰ https://www.elcomsoft.com/news/841.html

#ESR #Windows #DFIR #digitalforensics
Accelerating Computer Forensics: Elcomsoft System Recovery and the Low-Hanging Fruit Strategy

In the world of digital investigations, the sheer volume of data and the challenge of identifying valuable evidence can be overwhelming. Often, investigators find themselves faced with the need for optimization โ€” the ability to quickly and seamlessly identify what is valuable and requires further examination. We aim to fulfill this need by introducing a new forensic toolkit in Elcomsoft System Recovery, a powerful bootable tool designed to speed up investigations, quickly identify and collect digital evidence right on the spot. ๐Ÿ”ฅ

๐Ÿ‘‰ https://blog.elcomsoft.com/2023/07/accelerating-computer-forensics-elcomsoft-system-recovery-and-the-low-hanging-fruit-strategy/

#ESR #Windows #DFIR #digitalforensics
iOS Forensic Toolkit Tips & Tricks

For forensic experts dealing with mobile devices, having a reliable and efficient forensic solution is crucial. Elcomsoft iOS Forensic Toolkit is an all-in-one software that aids in extracting data from iOS devices, yet it is still far away from being a one-button solution that many experts keep dreaming of. In this article, we will walk you through the preparation and installation steps, list additional hardware environments, and provide instructions on how to use the toolkit safely and effectively.

๐Ÿ‘‰๐Ÿป https://blog.elcomsoft.com/2023/07/ios-forensic-toolkit-tips-tricks/

#EIFT #tipsandtricks #dfir
iOS Device Acquisition: Installing the Extraction Agent

Acquiring data from Apple devices, specifically those not susceptible to bootloader exploits (A12 Bionic chips and newer), requires the use of agent-based extraction. This method allows forensic experts to obtain the complete file system from the device, maximizing the amount of data and evidence they can gather using the iOS Forensic Toolkit. In this article, we will discuss some nuances of agent-based iOS device acquisition.

๐Ÿ‘‰๐Ÿป https://blog.elcomsoft.com/2023/07/ios-device-acquisition-installing-the-extraction-agent/

#agent #AppleDeveloperProgram #EIFT #ElcomsoftiOSForensicToolkit #dfir #tipsandtricks #mobileforensics
โค1๐Ÿ‘1
Apple iCloud Acquisition: A Lifeline for Forensic Experts

Acquiring data from locked, broken, or inaccessible devices poses significant challenges. However, there are ways to retrieve valuable information from such devices by obtaining the data from iCloud, including old data that has been deleted with no chance of recovery. In this article, we will explore the classic acquisition methods available for iOS devices and focus on the crucial role of Apple iCloud in forensic investigations.

๐Ÿ‘‰ https://blog.elcomsoft.com/2023/07/apple-icloud-acquisition-a-lifeline-for-forensic-experts/

#AdvancedDataProtection #cloudforensics #digitalevidence #EPB #iCloud
Best Practices in Mobile Forensics: Separating Extraction and Analysis

In the ever-evolving landscape of digital investigations, mobile forensics has become a critical aspect of law enforcement work. The challenges of extracting, handling, and analyzing data obtained from various sources have led to a growing demand for universal solutions. Weโ€™d like to emphasize the importance of every stage of mobile forensics, the significance of extraction, and the critical importance of expertise in this field.

๐Ÿ‘‰ https://blog.elcomsoft.com/2023/07/best-practices-in-mobile-forensics-separating-extraction-and-analysis/

 #DFIR #mobileforensics
Low-level extraction support for iOS 16.5

Elcomsoft iOS Forensic Toolkit 8.40 and 7.94 expand agent-based low-level extraction of Apple mobile devices, adding support iOS 16.4.1, 16.4.1 (a), and 16.5 on A12 and newer chips, and supporting iOS 15.4 through 16.5 on A11 Bionic devices. In addition, checkm8-based extraction support was bumped to iOS/iPadOS/tvOS 16.6 and iOS/iPadOS 15.7.8.

๐Ÿ‘‰ https://www.elcomsoft.com/news/843.html

#agent #EIFT #extractionagent #iOS #lowlevelextraction
Breaking into iOS 16.5: Extracting the File System and Keychain

When it comes to iOS data acquisition, Elcomsoft iOS Forensic Toolkit is the top choice for forensic experts. Its cutting-edge features and unmatched capabilities have made it the go-to software for investigating iOS devices. In a recent update, we expanded the capabilities of the low-level extraction agent to support full file system extraction and keychain decryption on Appleโ€™s newest devices running iOS 16.5. This achievement represents a breakthrough, as the delay between Appleโ€™s iOS updates and our forensic software release has significantly reduced.

๐Ÿ‘‰ https://blog.elcomsoft.com/2023/08/breaking-into-ios-16-5-extracting-the-file-system-and-keychain/

#agent #EIFT #extractionagent #iOS #lowlevelextraction
Open-Sourcing Orange Pi R1 LTS Software for Firewall Functionality: Secure Sideloading of Extraction Agent

We are excited to announce the release of an open-source software for Orange Pi R1 LTS designed to provide firewall functionality for sideloading, signing, and verifying the extraction agent that delivers robust file system imaging and keychain decryption on a wide range of Apple devices with iOS Forensic Toolkit. This development aims to address the growing security challenge faced by forensic experts when sideloading the extraction agent using regular and developer Apple accounts.

Important: older developer accounts created before June 6, 2021, are exempt from the verification process. If you are using one of these accounts, you will not need a firewall to run the extraction agent.

๐Ÿ‘‰ https://blog.elcomsoft.com/2023/08/open-sourcing-orange-pi-r1-lts-software-for-firewall-functionality-secure-sideloading-of-extraction-agent/
What to Do When Password Recovery Attacks Stall

Have you ever tried to unlock a password but couldnโ€™t succeed? This happens when the password is really strong and designed to be hard to break quickly. In this article, weโ€™ll explain why this can be a tough challenge and what you can do about it.

๐Ÿ‘‰
https://blog.elcomsoft.com/2023/08/what-to-do-when-password-recovery-attacks-stall/

#EDPR #attacks #password
iOS Forensic Toolkit: Troubleshooting Low-Level Extraction Agent

In this tutorial, we will address common issues faced by users of the iOS Forensic Toolkit when installing and using the low-level extraction agent for accessing the file system and keychain on iOS devices. This troubleshooting guide is based on the valuable feedback and data received by our technical support team.

๐Ÿ‘‰ https://blog.elcomsoft.com/2023/09/ios-forensic-toolkit-troubleshooting-low-level-extraction-agent/

#EIFT #Agent #dataextraction #iOS
๐Ÿ‘3
Elcomsoft iOS Forensic Toolkit 8.41: portable Windows edition ๐Ÿ”ฅ

Elcomsoft iOS Forensic Toolkit 8.41 is now available for Windows users in the all-new Windows edition. This new update maintains and extends the functionality of EIFT 7, which is now approaching the end of its life cycle. EIFT 8 is provided as a portable edition, eliminating the need for installation. In addition, the updated extraction agent can now access individual folders or file system metadata.

๐Ÿ‘‰ https://www.elcomsoft.com/news/844.html

#EIFT #Agent #dataextraction #iOS #Windows #MacOS
๐Ÿ‘1
iOS Forensic Toolkit 8 Lands on Windows

We have exciting news: iOS Forensic Toolkit 8 is now available for Windows users in the all-new Windows edition. The new build maintains and extends the functionality of EIFT 7, which is now approaching the end of its life cycle. In addition, weโ€™ve made the Toolkit portable, eliminating the need for installation.
Learn whatโ€™s new in the eights version of the Toolkit!

๐Ÿ‘‰ https://blog.elcomsoft.com/2023/10/ios-forensic-toolkit-8-lands-on-windows/

#EIFT #Agent #dataextraction #iOS #Windows #MacOS
๐Ÿ‘2
Using and Troubleshooting the checkm8 Exploit

The bootloader vulnerability affecting several generations of Apple devices opens the door to forensically sound extraction. In todayโ€™s article weโ€™ll discuss the compatibility and features of this exploit with different devices, iOS versions, and platforms. In addition, weโ€™ll provide security professionals and researchers with valuable insight into potential issues and solutions when working with checkm8.

๐Ÿ‘‰ https://blog.elcomsoft.com/2023/10/using-and-troubleshooting-the-checkm8-exploit/

#checkm8 #EIFT #iOS #lowlevelextraction #troubleshooting
Supporting Sage 50 Accounting (Peachtree) 2024

Advanced Sage Password Recovery (ASAPR) received an update, adding support for the latest version of Sage 50 Accounting. The tool can now instantly reset passwords to the latest versions of Sage 50 Accounting (Peachtree) 2024. In addition, the tool can reset passwords to the latest Act! v25 (2023) release.

๐Ÿ‘‰๐Ÿป https://www.elcomsoft.com/news/845.html

#passwordrecovery #sage
๐Ÿ‘1
Elcomsoft iOS Forensic Toolkit 8.50 expands capabilities for Linux users and legacy devices

Elcomsoft iOS Forensic Toolkit 8.50 is now available for Linux users in the all-new Linux edition. This new update implements logical acquisition, as well as agent-based and bootloader-based low-level extraction methods in a single tool for common Linux distros. In addition, the update brings low-level extraction for Apple Watch S0, S1, and S2 and improves bootloader level extractions for all supported devices.

๐Ÿ‘‰๐Ÿป https://www.elcomsoft.com/news/846.html

#linux #applewatch #apple #EIFT #dfir
๐Ÿ‘3