01.07.2020 Views

Cyber Defense eMagazine July 2020 Edition

Cyber Defense eMagazine July Edition for 2020 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, US Editor-in-Chief, Pieruligi Paganini, Co-founder & International Editor-in-Chief, Stevin Miliefsky, President and many more writers, partners and supporters who make this an awesome publication! Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES

Cyber Defense eMagazine July Edition for 2020 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, US Editor-in-Chief, Pieruligi Paganini, Co-founder & International Editor-in-Chief, Stevin Miliefsky, President and many more writers, partners and supporters who make this an awesome publication! Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Iphone Extraction Without A Jailbreak<br />

Imaging the file system and decrypting the keychain from iOS devices without jailbreaking<br />

By Oleg Afonin, Security Researcher, ElcomSoft Co.Ltd.<br />

Traditionally, forensic experts without access to proprietary technologies had relied upon jailbreaks to<br />

perform the lowest-level extraction of Apple iOS devices. Using jailbreaks, even advanced ones exploiting<br />

hardware vulnerabilities, presents a number of challenges. In this article, we are offering an alternative<br />

method for accessing the content of iOS devices that does not require jailbreaking.<br />

Jailbreak-based acquisition<br />

Before covering jailbreak-free extraction, let’s talk about jailbreaks.<br />

Why is a jailbreak needed during the course of file system extraction? Jailbreaking the device allows<br />

experts to raise privileges to the level required to access the protected file system on the device, which<br />

is simply not possible on Apple devices without superuser access. In addition, a jailbreak was the only<br />

way to extract and decrypt the complete content of the keychain containing all of the user’s saved<br />

password and things such as certificates, identities and encryption keys (e.g. keys to encrypted<br />

databases of third-party password managers). In other words, a jailbreak was (and still is) used to obtain<br />

the required level of privileges for accessing things such as application sandboxes, stored passwords<br />

and encryption keys.<br />

<strong>Cyber</strong> <strong>Defense</strong> <strong>eMagazine</strong> –<strong>July</strong> <strong>2020</strong> <strong>Edition</strong> 92<br />

Copyright © <strong>2020</strong>, <strong>Cyber</strong> <strong>Defense</strong> Magazine. All rights reserved worldwide.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!