Software Products

Data Forensics > Software

Mobilyze Forensics Software

Mobilyze was specifically designed to forensically analyze iPhone, iPod Touch and iPad devices.  It runs natively in Mac OS X, offering examiners the most comprehensive means of accessing the most relevant data from heavily used applications such as text (SMS), camera (photos), phone (calls and voicemails) as well as raw data from hundreds of apps. The product is capable of analyzing multiple devices simultaneously, easing the time and effort of consolidating findings into one comprehensive report. Watch our introduction video

More...

SoftBlock 1.0.3

BlackBag's SoftBlock is a write-blocking software application that identifies devices upon connection and mounts them, depending on user preference, in either a forensically sound read-only manner or a conventional read-write configuration. A kernel-based utility, SoftBlock offers Mac forensic examiners flexibility, security and speed in previewing and analyzing evidence across any number of devices. Watch a brief video to learn more.

More...

BlackBag Macintosh Forensic Suite 2.5

The BlackBag Macintosh Forensic Suite is a unique set of 19 tools that provide forensic examiners with a flexible, open environment within which to perform their analysis. The Suite is specifically designed for Mac OS X (version 10.1 & higher). The applications are designed to efficiently carve and copy the most pertinent sectors of a target hard drive speeding the examiners analysis time, while ensuring a thorough investigation of the drive.

System requirements: Universal (Intel or PowerPC); OS X 10.4 or later; min 1GB RAM; min 500MB available disk space.

More...

BlackBag MacQuisition CF 2.52

MacQuisition CF is a external bootable forensic acquisition tool used to safely and easily image Mac drives using the source (suspect) system. MacQuisition provides an intuitive user interface to the traditional command line, providing both beginner and advanced forensic examiners with a valuable tool to:

  • Easily identify the source device(s)
  • Configure destination location
  • Use the command line (recommend for advanced users only)
  • Log case, exhibit and evidence tracking numbers and notes
  • Automatically generate MD5, SHA1 and SHA 256 hashes
  • Advanced features include hash and block size customization along with extension naming options
  • Two fast compact flash card readers, UDMA 1394b with 1394a adapter and USB 2.0

More...

Forensic Software Bundle

Save $199 when you purchase both MacQuisition and the Forensic Suite. This package immediately equips Mac examiners with an effective means of acquiring and analyzing Macs.

More...