Product Type

Passware Kit Forensic

Passware Kit Forensic

Passware Kit Forensic

The complete encrypted electronic evidence discovery solution.

 

The world leader in encrypted electronic evidence discovery and decryption

 

Passware Kit Forensic is the complete encrypted electronic evidence discovery solution that reports and decrypts all password-protected items on a computer. The software recognizes 360+ file types and works in batch mode recovering passwords.

 

Passware Kit Forensic

Password recovery for over 360 file types

 

MS Office, PDF, Zip and RAR, QuickBooks, FileMaker, Lotus Notes, Bitcoin wallets, Apple iTunes Backup, Mac OS X Keychain, password managers, and many other popular applications.

Passware Kit Forensic

Full disk decryption

 

Decrypts or recovers passwords for APFS, Apple DMG, BitLocker, Dell, FileVault2, LUKS and LUKS2, McAfee, PGP, Steganos, Symantec, TrueCrypt, and VeraCrypt disk images. Supports batch processing.

 

Optional Device Decryption Add-on unlocks, decrypts, and recovers passwords for Western Digital My Passport drives and disks for Macs with Apple T2 Security Chips, including ones protected with EFI firmware password. Available for law enforcement and other types of government organizations. Contact sales for additional information.

 

Passware Kit Forensic

Live memory analysis

 

Analyzes live memory images and hibernation files and extracts encryption keys for hard disks and passwords for Windows & Mac accounts. Passware Bootable Memory Imager acquires memory of Windows, Linux, and Mac computers.

The complete encrypted electronic evidence discovery solution

 

Password recovery for over 360 file types

 

MS Office, PDF, Zip and RAR, QuickBooks, FileMaker, Lotus Notes, Bitcoin wallets, Apple iTunes Backup, Mac OS X Keychain, password managers, and many other popular applications.

 

GPU acceleration & resource management

 

Accelerated password recovery with multiple computers, NVIDIA and AMD GPUs, and Rainbow Tables. Built-in Resource Manager makes it easy to set up and monitor a hardware cluster.

 

Live memory analysis

 

Analyzes memory images and hibernation files and extracts encryption keys for hard disks and files and passwords for Windows/Mac accounts and websites. Acquires memory of Windows, Linux, and Mac computers.

 

Batch mode

 

Runs password recovery tasks for multiple files and FDE images, one-by-one without user interaction.

 

Mac version

 

In addition to all the key features of a Windows version, Passware Kit Forensic for Mac provides access to APFS disks from Mac computers with Apple T2 chip.

 

Intelligent detection

 

Detects all encrypted files and hard disk images and reports the type of encryption and the complexity of the decryption.

 

Passware Kit Agents

 

Support for distributed password recovery for Windows, Linux, Amazon EC2, and Microsoft Azure. The Linux version runs a portable Passware Kit Agent from a bootable Linux USB drive. Remote management of network Agents directly from the PKF.

 

Decryption of FDE

 

Decrypts or recovers passwords for APFS, Apple DMG, BitLocker, Dell, FileVault2, LUKS/LUKS2, McAfee, PGP, Steganos, Symantec, and TrueCrypt/VeraCrypt containers and disk images. Optional Device Decryption Add-on recovers passwords for Macs with T2 chip and WD My Passport drives.

Hardware acceleration of password recovery attacks

 

Accelerated password recovery with multiple computers, NVIDIA and AMD GPUs, and Rainbow Tables.

 

File Type Encryption CPU Speed
i7-9700F
p/sec
NVIDIA Speed
GeForce RTX 4070 Ti
p/sec
AMD Speed
Radeon RX 6900 XT
p/sec
MS Office 2013+ AES-256 78 28,557 23,883
RAR 5.x AES-256 98 114,597 117,867
macOS / FileVault2 / APFS AES-256 53 65,588 65,392
Apple iTunes Backup / iOS 10.x+ AES-256 <1 372 361
MS Windows / BitLocker BitLocker 7 3,947 3,623
MS Windows NTLMv2 Hash 1,203,000 1,273,000,000 927,000,000

Passware Kit AgentNetwork Distributed Password Recovery

 

Passware Kit Agent is a network distributed password recovery worker for Passware Kit Forensic.

 

It runs on Windows and Linux 64-bit and has linear performance scalability. Each computer running Passware Kit Agent supports multiple CPUs and GPUs simultaneously. Passware Kit Forensic comes with 5 agents included with ability to purchase more separately as needed. All the Agents can be managed remotely directly from the PKF.

 

Passware Kit Agent

 

 Passware Kit Editions