Elcomsoft
551 subscribers
570 photos
1 video
1 file
455 links
Elcomsoft official channel is the place where you can find news, events and the latest updates of our products.

website: elcomsoft.com
twitter: twitter.com/elcomsoft
youtube: youtube.com/c/ElcomsoftCompany
blog: blog.elcomsoft.com
t.me/elcomsoftru
Download Telegram
Elcomsoft iOS Forensic Toolkit 8.41: portable Windows edition πŸ”₯

Elcomsoft iOS Forensic Toolkit 8.41 is now available for Windows users in the all-new Windows edition. This new update maintains and extends the functionality of EIFT 7, which is now approaching the end of its life cycle. EIFT 8 is provided as a portable edition, eliminating the need for installation. In addition, the updated extraction agent can now access individual folders or file system metadata.

πŸ‘‰ https://www.elcomsoft.com/news/844.html

#EIFT #Agent #dataextraction #iOS #Windows #MacOS
πŸ‘1
iOS Forensic Toolkit 8 Lands on Windows

We have exciting news: iOS Forensic Toolkit 8 is now available for Windows users in the all-new Windows edition. The new build maintains and extends the functionality of EIFT 7, which is now approaching the end of its life cycle. In addition, we’ve made the Toolkit portable, eliminating the need for installation.
Learn what’s new in the eights version of the Toolkit!

πŸ‘‰ https://blog.elcomsoft.com/2023/10/ios-forensic-toolkit-8-lands-on-windows/

#EIFT #Agent #dataextraction #iOS #Windows #MacOS
πŸ‘2
Using and Troubleshooting the checkm8 Exploit

The bootloader vulnerability affecting several generations of Apple devices opens the door to forensically sound extraction. In today’s article we’ll discuss the compatibility and features of this exploit with different devices, iOS versions, and platforms. In addition, we’ll provide security professionals and researchers with valuable insight into potential issues and solutions when working with checkm8.

πŸ‘‰ https://blog.elcomsoft.com/2023/10/using-and-troubleshooting-the-checkm8-exploit/

#checkm8 #EIFT #iOS #lowlevelextraction #troubleshooting
Supporting Sage 50 Accounting (Peachtree) 2024

Advanced Sage Password Recovery (ASAPR) received an update, adding support for the latest version of Sage 50 Accounting. The tool can now instantly reset passwords to the latest versions of Sage 50 Accounting (Peachtree) 2024. In addition, the tool can reset passwords to the latest Act! v25 (2023) release.

πŸ‘‰πŸ» https://www.elcomsoft.com/news/845.html

#passwordrecovery #sage
πŸ‘1
Elcomsoft iOS Forensic Toolkit 8.50 expands capabilities for Linux users and legacy devices

Elcomsoft iOS Forensic Toolkit 8.50 is now available for Linux users in the all-new Linux edition. This new update implements logical acquisition, as well as agent-based and bootloader-based low-level extraction methods in a single tool for common Linux distros. In addition, the update brings low-level extraction for Apple Watch S0, S1, and S2 and improves bootloader level extractions for all supported devices.

πŸ‘‰πŸ» https://www.elcomsoft.com/news/846.html

#linux #applewatch #apple #EIFT #dfir
πŸ‘3
Forensic Insights into Apple Watch Data Extraction

The latest update to the iOS Forensic Toolkit has expanded data extraction support for older models of Apple Watch, introducing low-level extraction capabilities for Apple Watch Series 0, Series 1, and Series 2. In a landscape where new devices are released on a yearly schedule, we stand committed to a balanced approach. While it’s easy for many to dismiss older devices, we recognize their significance as they frequently reappear in the labs of forensic experts. It is important to emphasize that, unlike many, we cater to the needs of experts who have to deal with legacy devices. This enhancement enables macOS and Linux users to delve deeper into these watches, retrieving crucial information such as passwords and complete file systems.

πŸ‘‰πŸ» https://blog.elcomsoft.com/2023/11/forensic-insights-into-apple-watch-data-extraction/

#applewatch #apple #EIFT #watchOS #dfir
iOS Forensic Toolkit: Exploring the Linux Edition

The latest update of iOS Forensic Toolkit brought an all-new Linux edition, opening up a world of possibilities in mobile device analysis. The highly anticipated Linux edition preserves and expands the features previously available to macOS and Windows users. Forensic professionals can now perform advanced logical and low-level extractions with the aid of a custom extraction agent and extract information using the bootloader-level exploit, making forensic analysis more accessible on Linux platforms.

πŸ‘‰πŸ» https://blog.elcomsoft.com/2023/11/ios-forensic-toolkit-exploring-the-linux-edition/

#linux #EIFT #checkm8 #dfir #lowlevelextraction #dataextraction
❀1
iOS 17.3 Developer Preview: Stolen Device Protection

The first developer beta of iOS 17.3 includes Stolen Device Protection, a major new security feature designed to protect the user’s sensitive information stored in the device and in iCloud account if their iPhone is stolen and the thief gets access to the phone’s passcode. This optional feature could represent a significant change in how Apple looks at security, where currently the passcode is king. At this time, no detailed documentation is available; developers are getting a prompt to test the feature when installing the new beta.

πŸ‘‰πŸ» https://blog.elcomsoft.com/2023/12/ios-17-3-developer-preview-stolen-device-protection/

#biometrics #EIFT #EPB #FaceID #passcode #touchid
Elcomsoft iOS Forensic Toolkit 8.51: improved compatibility and enhanced functionality

The latest maintenance release of Elcomsoft iOS Forensic Toolkit 8.51 primarily focuses on addressing minor issues and introducing significant enhancements for older devices, particularly 32-bit devices with HFS filesystems. In addition, checkm8 extraction now supports iOS 16.7.3 and 16.7.4 where available.

πŸ‘‰πŸ» https://www.elcomsoft.com/news/847.html

#agent #EIFT #iOS
A Comprehensive Instruction Manual on Installing the Extraction Agent

This guide covers the correct installation procedure for Elcomsoft low-level extraction agent, an integral part of iOS Forensic Toolkit that helps extracting the file system and keychain from supported iOS devices. This instruction manual provides a step-by-step guide for setting up a device and installing the extraction agent. We’ve included suggestions from troubleshooting scenarios and recommendations we derived during testing.

πŸ‘‰πŸ» https://blog.elcomsoft.com/2023/12/a-comprehensive-instruction-manual-on-installing-the-extraction-agent/

#agent #EIFT #troubleshooting #iOS
Low-level extraction of iOS 16.6.1

Elcomsoft iOS Forensic Toolkit 8.52 expands agent-based low-level extraction of Apple mobile devices, adding support iOS 16.5.1, 16.6 and 16.6.1 on A11 Bionic and newer chips, and improving agent success rate for devices running iOS 15.0 through 16.5.

πŸ‘‰πŸ» https://www.elcomsoft.com/news/848.html

#EIFT #iOS #iphone #dataextraction
A Comprehensive Guide to Essential Tools for Elcomsoft iOS Forensic Toolkit

Elcomsoft iOS Forensic Toolkit (EIFT) is a powerful software designed to acquire data from various Apple devices, ranging from iPhones to HomePods. However, to make the most of this tool, you’ll need more than just the software itself. In this article, we will quickly review the mandatory and optional accessories that are essential for the effective use of the product.

πŸ‘‰πŸ» https://blog.elcomsoft.com/2024/01/a-comprehensive-guide-to-essential-tools-for-elcomsoft-ios-forensic-toolkit/

#EIFT #Raspberry
Forensically Sound Cold System Analysis

In the world of digital forensics, there are various ways to analyze computer systems. You might be familiar live system analysis or investigating forensic disk images, but there’s yet another method called cold system analysis. Unlike live analysis where experts deal with active user sessions, cold system analysis works differently. It’s like a middle ground between live analysis and examining saved images of a computer’s storage. But why and when would someone use cold analysis? What can you do with it, and how does it compare to the usual methods?

πŸ‘‰πŸ» https://blog.elcomsoft.com/2024/01/forensically-sound-cold-system-analysis/

#EDPR #EFDD #ESR #dfir
When Extraction Meets Analysis: Cellebrite Physical Analyzer

When equipping a forensic lab, having a diverse set of tools is extremely important due to their diverse, rarely overlapping capabilities, and the need for cross-checking the results. With that many tools, compatibility is crucial. This is why we went a long way to ensure that any data extracted with our mobile forensic tools can be opened in many popular forensic analysis tools.

πŸ‘‰πŸ» https://blog.elcomsoft.com/2024/01/when-extraction-meets-analysis-cellebrite-physical-analyzer/

#analysis #Cellebrite #CellebritePhysicalAnalyzer #EIFT #extraction #guide #walkthrough
Changes to U.S. iOS App Store Policies Allow External Purchase Links

In a controversial move, Apple is implementing major changes to its U.S. iOS App Store policies, granting developers the ability to direct customers to non-App Store purchasing options for digital goods. This update permits users to make in-app purchases through an alternative method. However, Apple will continue to collect a commission ranging from 12 to 27 percent on content purchased through this avenue, providing only a 3 percentage points commission cut compared to purchases made through the official Apple App Store.

πŸ‘‰πŸ» https://blog.elcomsoft.com/2024/01/changes-to-u-s-ios-app-store-policies-allow-external-purchase-links/

#AppStore #Apple #news #iOS
Supporting Sage 50 Accounting Canadian Edition

Advanced Sage Password Recovery (ASAPR) received an update, adding support for the latest version of Sage 50 Accounting Canadian Edition. In version 2.78, the tool can now instantly reset passwords to the latest versions of Sage 50 Accounting Canadian Edition.

πŸ‘‰πŸ» https://www.elcomsoft.com/news/849.html

#Sage #ASAPR #Sage50 #passwordrecovery
Enhanced support for legacy devices

Elcomsoft iOS Forensic Toolkit 8.53 enhances support for legacy Apple devices, adding the ability to mount HFS images in Windows. In addition, the update brings multiple fixes in HFS extractions and general reliability enhancements.

πŸ‘‰πŸ» https://www.elcomsoft.com/news/850.html

#EIFT #iOS
Bootloader-Level Extraction for Apple Hardware

The bootloader vulnerability affecting several generations of Apple devices, known as β€œcheckm8”, allows for forensically sound extraction of a wide range of Apple hardware including several generations of iPhones, iPads, Apple Watch, Apple TV, and even HomePod devices. The exploit is available for chips that range from the Apple A5 found in the iPhone 4s and several iPad models to A11 Bionic empowering the iPhone 8, 8 Plus, and iPhone X; older devices such as the iPhone 4 have other bootloader vulnerabilities that can be exploited to similar effect. In this article, we will go through the different chips and their many variations that are relevant for bootloader-level extractions.

πŸ‘‰πŸ» https://blog.elcomsoft.com/2024/02/bootloader-level-extraction-for-apple-hardware/

#checkm8 #dataextraction #EIFT
❀1
Elcomsoft Distributed Password Recovery introduces intelligent load balancing, performance optimizations

Elcomsoft Distributed Password Recovery 4.70 introduces intelligent load balancing, a new resource management feature to optimize the use of computational resources available on each workstation. intelligent load balancing allows password recovery jobs to complete sooner thanks to more even use of available compute units. In addition, we’ve made over 60 commits to thoroughly optimize the entire codebase.

πŸ‘‰πŸ»https://www.elcomsoft.com/news/863.html

#EDPR #updating
iOS Forensic Toolkit 8.62: bug fixes and performance enhancements

Elcomsoft iOS Forensic Toolkit 8.61 is a maintenance release that resolves several compatibility issues during checkm8 extractions for select combinations of hardware and software.

The update to Elcomsoft iOS Forensic Toolkit 8.62 brings stability and compatibility improvements to bootloader-level checkm8 extractions, resolving several issues discovered with specific combinations of software and hardware.

In the latest update, we continued our efforts to enhance and stabilize the extraction process that utilizes the bootloader exploit, focusing on uncommon scenarios and specific combinations of software and hardware. We are constantly working to improve stability and fix issues, whether identified internally or reported by our users. As a result, the toolkit has become more reliable and user-friendly, resolving numerous potential challenges in data extraction.

πŸ‘‰πŸ» https://www.elcomsoft.com/news/864.html

#checkm8 #dataextraction #EIFT
What’s New in Elcomsoft System Recovery 8.34: More Data, Faster Imaging, BitLocker Key Extraction

We updated Elcomsoft System Recovery to version 8.34. This release focuses on expanding the tool’s data acquisition capabilities, improving disk imaging performance, and adding BitLocker recovery key extraction for systems managed via Active Directory. Here’s a technical breakdown of the changes.

Elcomsoft System Recovery (ESR) is a portable digital forensics tool designed for on-site analysis of Windows-based systems. It enables investigators to examine computers without removing drives or booting into the installed operating system. Built on a Windows PE environment, ESR provides quick access to local storage and is compatible with all major Windows file systems and a wide range of both legacy and modern hardware. It’s especially useful in time-critical scenarios or when physical access to the system is restricted.

πŸ”Žadded 800+ file system artifacts
πŸ”Ž extracting AD BitLocker Recovery Keys
πŸ”Ž much faster disk imaging
πŸ”Ž access to Windows 11 hidden volumes
πŸ”Ž view Event Log files from Custom Locations

πŸ‘‰πŸ» https://blog.elcomsoft.com/2025/04/whats-new-in-elcomsoft-system-recovery-8-34-more-data-faster-imaging-bitlocker-key-extraction/

#ESR #updating
❀2πŸ‘1