Book Image

Practical Mobile Forensics

Book Image

Practical Mobile Forensics

Overview of this book

Table of Contents (20 chapters)
Practical Mobile Forensics
Credits
About the Authors
About the Reviewers
www.PacktPub.com
Preface
10
Android Data Recovery Techniques
Index

Elcomsoft iOS Forensic Toolkit


Elcomsoft iOS Forensic Toolkit (EIFT) is a set of tools aimed at making the acquisition of iOS devices easier. EIFT is a combination of software that is able to perform forensic acquisition of iOS devices running any version of iOS (note: some iOS versions require the device to be jailbroken). EIFT can acquire bit-for-bit images of a device's file system, extract device secrets (passcodes, passwords, and encryption keys), and decrypt the file system image. For more information on EIFT, visit http://www.elcomsoft.com/eift.html.

The toolkit was initially available only to law enforcement agencies, but now it is available to everyone. The toolkit supports both Mac OS X and Windows platforms with iTunes 10.6 or later installed.

Features of EIFT

The following are the features of EIFT:

  • Supports physical and logical acquisition.

  • Acquires complete bit-for-bit device images.

  • Quick file system acquisition: 20-40 minutes for 32 GB models.

  • Supports passcode recovery attacks...