iOS Forensic Toolkit
ElcomSoft Co. Ltd. has updated its iOS Forensic Toolkit, adding physical acquisition support for jailbroken iOS 7 devices. Physical acquisition support is now available for jailbroken devices running Apple iOS 7 including iPhone 4S, 5 and 5C, iPad 2nd to 4th gen, iPad Mini, iPod Touch 5th gen, and either having no passcode protection or carrying a jailbreak installed. In addition, the new release adds support for previously unavailable versions of iOS 6.1.3-6.1.5.
With more than 83% of all iOS devices now running iOS 7, ElcomSoft gives the mobile forensic industry a boost. Elcomsoft iOS Forensic Toolkit is still remaining the only commercially available forensic product that is able to perform physical acquisition of iPhone 4S, iPad 2 and newer generation hardware.
Physical acquisition allows extracting information from AppleХs protected storage, the keychain. In many cases, the enhanced iOS 7 keychain contains the original passwords to Apple ID accounts. This allows investigators seamlessly accessing information stored in the iCloud as well as tracking the usersХ geolocation coordinates in real-time by using Apple iCloud Find My Phone service.
Physical acquisition can be performed for the following models if they are running iOS 5, all versions of iOS 6, or iOS 7 and are jailbroken, or if jailbreak code can be installed by the investigator:
- iPhone 4S, 5 and 5C;
- iPad 2, 3 and 4;
- iPad Mini;
- iPod Touch 4th and 5th gen.
- Support for iPhone 5S, iPad Air and iPad Mini with Retina is under development.
For more information, visit www.elcomsoft.com.