Passware Kit 11.7 Instantly Decrypts PGP and Office 2010; Features Improved Integration with EnCase
- Instantly decrypts MS Office 2007-2010 documents through memory analysis
- Instantly decrypts PGP Whole Disk Encryption volumes through memory analysis
- Recovers passwords for Apple Disk Images (DMG)
- Improved integration with Guidance EnCase:
- One-click password recovery from EnCase
- Imports dictionaries/wordlists directly from EnCase
New: Instantly decrypts MS Office 2007-2010 documents through memory analysis
Passware Kit now instantly decrypts MS Word, Excel and PowerPoint v.2007-2010 files by recovering encryption keys from computer memory.
If the encrypted document was open at the time of acquiring a memory image or last time when the computer went into “sleep” mode, the encryption keys are saved in memory or hibernation file, which enables Passware Kit to extract them and decrypt the document.
NOTE: This feature is available in the Enterprise and Forensic editions only.
New: Instantly decrypts PGP Whole Disk Encryption volumes through memory analysis
Passware Kit now instantly decrypts PGP WDE (Whole Disk Encryption) volumes by recovering encryption keys from computer memory. If live memory analysis is not possible for a PGP disk, Passware Kit launches common brute-force password recovery attacks.
NOTE: This feature is available in the Enterprise and Forensic editions only.
New: Recovers passwords for Apple Disk Images (DMG)
Passware Kit now recovers passwords for Apple Disk Image DMG files, running a combination of eight common brute-force attacks. For maximum performance, it uses NVIDIA GPU and TACC hardware accelerators.
NOTE: This feature is available in the Enterprise and Forensic editions only.
New: Improved integration with Guidance EnCase
EnCase now detects Passware Kit installation and adds Open With | Passware Kit menu for one-click password recovery.
Starting with Passware version 11.7, EnCase v7 exports the index and known passwords as a dictionary to be utilized for decryption.
NOTE: This feature is available in the Forensic edition only.