|
Breaking Hard-Disk Encryption |
|
|
|
Source: Schneier on Security - Posted by Dave Wreski
|
The newly announced ElcomSoft Forensic Disk Decryptor can decrypt BitLocker, PGP, and TrueCrypt. And it's only $300. How does it work?
Elcomsoft Forensic Disk Decryptor acquires the necessary decryption keys by analyzing memory dumps and/or hibernation files obtained from the target PC. You'll thus need to get a memory dump from a running PC (locked or unlocked) with encrypted volumes mounted, via a standard forensic product or via a FireWire attack. Alternatively, decryption keys can also be derived from hibernation files if a target PC is turned off.
Read this full article at Schneier on Security
Only registered users can write comments. Please login or register. Powered by AkoComment! |