Elcomsoft IOS Forensic ToolkitsimbamdekwaApril 27, 2024

Elcomsoft IOS Forensic Toolkit

$2199,00

Perform full file system and logical acquisition of iPhone, iPad and iPod Touch devices. Image device file system, extract device secrets (passwords, encryption keys and protected data) and decrypt the file system image.

  • Full file system extraction and keychain decryption
  • Logical acquisition extracts backups, crash logs, media and shared files
  • Passcode unlock and physical acquisition for legacy devices
  • Extracts and decrypts protected keychain items
  • Repeatable, forensically sound extraction for select iPhone and iPad models through modified bootloader
  • Automatically disables screen lock for smooth, uninterrupted acquisition

Supports: all generations of iPhone, iPad, iPad Pro and iPod Touch, first-generation HomePod; Apple Watch and Apple TV 4 and 4K; all versions of iOS from iOS 3 to iOS 17

Categories: ,

Description

NEW FEATURES

Full low-level extraction with keychain decryption for iOS 16.0 – 16.6.1
Low-level file system extraction and keychain decryption are now available for a wider range of iOS versions than ever. Full low-level extraction is now available for iOS 16 through 16.6.1. The new methods support devices built with the A11 and newer chips, effectively covering the iPhone 8/8 Plus/iPhone X, as well as the iPhone Xs/Xr through iPhone 14/14 Pro range, and supports many iPads including those based on Apple M1 and M2 chips.

Enhanced support for legacy devices: mounting HFS images in Windows and Linux

The latest update enables Windows and Linux users to mount HFS disk images extracted from legacy Apple devices. This new capability empowers experts to efficiently process and analyze digital evidence extracted from legacy Apple devices on Linux and Windows-based computers.

System requirements

Windows

  • Windows 7/8/8.1/10/11

Apple macOS

  • macOS 11 Big Sur
  • macOS 12 Monterey
  • macOS 13 Ventura
  • macOS 14 Sonoma

Linux

  • Debian
  • Ubuntu
  • Mint
  • Kali
The iOS Forensic Toolkit for Windows requires the latest version of iTunes installed. macOS version is not guaranteed to work on a virtual machine or Hackintosh. Certain features (e.g. physical acquisition for legacy 32-bit devices, agent installation using non-developer accounts, checkm8 acquisition) may not be available in certain editions; check compatibility table for details. The Linux edition supports Debian, Ubuntu, Kali Linux, and Mint, and requires additional dependencies.

Release notes

Elcomsoft iOS Forensic Toolkit v.8.54

15 March, 2024

  • checkm8: Added support for 16.7.6 and 15.8.2 (macOS and Linux versions)
  • checkm8: Added full iOS 16 support in the Linux edition
  • checkm8: Improved iOS 16 support in the macOS edition
  • Minor bug fixes and improvements
  • macOS Legacy version has been deprecated

Uninstallation procedure: in order to uninstall the product, follow the standard procedure via Control Panel – Programs and features or use the corresponding Unistall link from the product’s folder in the Windows Start menu.

Reviews

There are no reviews yet.

Be the first to review “Elcomsoft IOS Forensic Toolkit”

Your email address will not be published. Required fields are marked *

Digital Forensic Tools
Buy now