The complete encrypted electronic evidence discovery solution
Passware Kit Forensic is the complete encrypted electronic evidence discovery solution that reports and decrypts all password-protected items on a computer. The software recognizes 280+ file types and works in batch mode recovering passwords.
Password recovery for 280+ file types
MS Office, PDF, Zip and RAR, QuickBooks, FileMaker, Lotus Notes, Bitcoin wallets, Apple iTunes Backup, Mac OS X Keychain, password managers, and many other popular applications.
Live memory analysis
Analyzes live memory images, hibernation files and extracts encryption keys for FileVault2, TrueCrypt, VeraCrypt, BitLocker, logins for Windows & Mac accounts from memory images and hibernation files.
Cloud data acquisition
Acquires backups and data from cloud services (Apple iCloud, MS OneDrive, and Dropbox). Extracts passwords from iCloud keychains.
Recovers passwords for Apple iPhone/iPad and Android backups as well as Android images and extracts data from images on Windows phones. Integrated with Oxygen Forensic Suite.
Accelerated password recovery with multiple computers, NVIDIA and AMD GPUs, Tableau Password Recovery, and Rainbow Tables.
Detects all encrypted files and hard disk images and reports the type of encryption and the complexity of the decryption.
Passware Kit agents
Support for distributed password recovery for Windows, Linux, and Amazon EC2. The Linux version runs a portable Passware Kit Agent from a bootable Linux USB drive.
Decryption of FDE
Decrypts or recovers passwords for BitLocker, FileVault2, APFS, TrueCrypt, VeraCrypt, LUKS, McAfee, Apple DMG, Symantec and PGP disk images.
Find all encrypted or password-protected documents, archives, and other files. Sort by decryption complexity. Passware Kit Forensic detects 280+ file types.
Quickly scan memory images and hibernation files. Extract encryption keys for FileVault2, TrueCrypt, VeraCrypt, and BitLocker for instant decryption of disks and containers. Build password dictionaries or extract account passwords for Windows and Mac.
Increase password recovery speed up to 400 times by using a single GPU (Graphics Processing Unit) card, and up to 3,200 times by using 8 GPUs in a single computer. Distribute password recovery tasks over a network of Windows or Linux computers, as well as Amazon EC2, for linear scalability.
Hardware Acceleration of Password Recovery Attacks
|File Type||Encryption||CPU Speed
RTX 2080 Ti
|MS Office 2013 or higher||AES-256||78||19,335||4,390|
|iTunes Backup v9||AES-256||2,006||280,000||91,400|
Network Distributed Password Recovery: Passware Kit Agent
Passware Kit Agent is a network distributed password recovery worker for Passware Kit Forensic. It runs on Windows (64-bit only), Linux (64-bit only), and Amazon EC2, and has linear performance scalability. Each computer running Passware Kit Agent simultaneously supports multiple CPUs, GPUs, and TPR accelerators. Passware Kit Forensic comes with 5 agents included with ability to purchase more separately as needed.