What’s new in Passware Kit 2023 v2:
- Password recovery for Steganos containers
- Brute-force recovery of VeraCrypt PIM parameters
- Mac EFI firmware password recovery and reset
- Support for mounted physical drives for FDE decryption
- Password recovery for Ethereum wallets
- Support for Windows NTLMv2 hash
- Instant password recovery for Opera GX and Crypto browsers
- New dictionary: Ukrainian
What’s New Video
For your convenience, we have included a video of all the newest features of Passware Kit 2023 v2. Take a look!
Passware Kit 2023 v2 extends full disk encryption support by introducing an option to detect and decrypt containers created by Steganos. Additionally, it allows brute-force attacks on the PIM parameter of VeraCrypt, which increases the chances of successful password recovery.
Passware T2 Add-on has been updated to support instant reset or recovery of Mac EFI firmware passwords.
The new version of Passware Kit also recovers passwords for Ethereum crypto wallets and NTLMv2 hashes, and it extracts passwords saved in Opera GX/Crypto browsers.
Password recovery for Steganos containers
Passware introduces brute-force password recovery for Steganos Data Safe encrypted containers (*.SLE files), including hidden partitions. It supports both regular passwords and picture protectors.
The average recovery speed on an Intel Core i7-9700 is up to 2,000 passwords per second.
Brute-force recovery of VeraCrypt PIM parameters
For VeraCrypt disk decryption, Passware Kit now allows users to specify possible Personal Iterations Multiplier (PIM) parameters to increase the chances of successful password recovery. There is an option to select a range or set of PIM values to check. Passware Kit then brute-forces the PIMs alongside with the VeraCrypt password.
If the PIM is unknown, Passware Kit uses the default value.
Mac EFI firmware password recovery and reset
To decrypt Macs protected with T2 security chip using Passware Kit Forensic T2 Add-on, it is necessary to acquire the disk image. An EFI firmware password, which is different from the macOS user password, prevents Mac from loading in Target Disk Mode, thus preventing image acquisition.
Passware Kit T2 Add-on now includes an option to recover or to instantly remove the Mac EFI firmware password. A restore option is also available, which allows users to set back the previously removed password.
Support for mounted physical drives for FDE decryption
For full-disk decryption, Passware Kit now supports mounted physical drives in addition to disk images. The drives should be specified as “\\.\PhysicalDriveN”, where N is the disk number.
This option is added to the Windows version of Passware Kit running as Administrator for the following FDE types: APFS/FileVault, BitLocker, LUKS and LUKS2, McAfee, PGP, Symantec, TrueCrypt, and VeraCrypt.
Password recovery for Ethereum wallets
In addition to Bitcoin, Dashcoin, Dogecoin, and Litecoin wallets, Passware Kit 2023 v2 recovers passwords for Ethereum wallets in Keystore v3 format.
Support for Windows NTLMv2 hash
Passware Kit is now capable of recovering passwords from NTLMv2 hashes, which normally store network credentials. The average speed is 650,000 passwords per second.
Instant password recovery for Opera GX and Crypto browsers
Passware Kit 2023 v2 instantly recovers website passwords saved in two additional browsers: Opera GX and Opera Crypto.
New dictionary: Ukrainian
A Ukrainian dictionary consisting of over a million words has been added to the built-in list of dictionaries in all editions of Passware Kit. The Ukrainian language preset is now also available for Xieve and Brute-force attacks.
New Distributed Password Recovery [Beta]
We are pleased to announce a completely redesigned version of Distributed Password Recovery!
This version allows multiple attacks to run simultaneously and reduces GPU idle time by optimizing the management of the computational resources. It is now possible to assign or reassign Passware Kit Agents to any Passware Kit Forensic instance within the local network. As a result, users no longer need to customize Passware Agent settings on each computer.
We invite all current Passware Kit Forensic and Ultimate users to try the Beta version! Details are available in the Passware account.
Passware Kit Ultimate
We are excited to announce Passware Kit Ultimate, an all-purpose decryption bundle. It allows investigators to access data from locked mobile devices and computers, encrypted disks and files – all with a single license.
The Passware annual release schedule includes at least four major Passware Kit Forensic and Passware Kit Mobile updates, as well as multiple minor updates and service releases. These products are now maintained as a single Passware Kit Ultimate license.
The key capabilities are:
- Password recovery for over 350 file types
- Recovery of passcodes for over 300 mobile devices
- Full disk decryption
- Decryption of Macs with Apple T2 Security Chip
- Live memory analysis
- Hardware acceleration on GPU
- Distributed password recovery with 10 Agents for Windows, Linux, Amazon Cloud, and Microsoft Azure