Dive into the world of #macOS forensic imaging with these great alternatives to #LLimager! 🔍 Among top tools, Fuji shines as the only open-source alternative. 🛠️
Dive into the world of #macOS forensic imaging with these great alternatives to #LLimager! 🔍 Among top tools, Fuji shines as the only open-source alternative. 🛠️
A very nice blog post by Derek Eiri about the inner workings of #Fuji for #macOS forensic acquisition. Tool validation is very important in #DigitalForensics.
#DFIR #AppleForensics #MacForensics
https://mreerie.com/2025/05/12/exploring-macos-native-commands-andrea-lazzarotto-fuji/
🆕 New blog post on Apple Unified Logs (iOS) and how to query them effectively.
🪵 Learn how to generate a .logarchive using a macOS device, third-party tools, or straight from files in a full file system extraction.
🪵 Use a macOS device to convert the .logarchive into a JSON file for use outside of a macOS environment.
🪵 Process the JSON file with iLEAPP in order to query the data using SQLite.
If you are not looking at unified logs you are missing incredibly valuable evidence in your cases.
Thanks to the following researchers for their invaluable contributions:
🙏 Lionel Notari
🙏 Tim Korver
🙏 Johann POLEWCZYK
🙏 Heather Charpentier
Read the blog post here:
https://abrignoni.blogspot.com/2025/05/extraction-processing-querying-apple.html
#DigitalForensics #DFIR #MobileForensics #UnifiedLogs #AppleForensics #iOSForensics #iLEAPP
#DigitalForensics
Fuji is allowing digital forensics professionals all over the world to easily perform #macOS full file system acquisition, without heavy licensing costs.
This kind of feedback is really appreciated and helpful for spreading the word. A huge thank you to Cesar Amaya. 🙏
Do you use #OpenSource software in your #DFIR job? Tell others about it! Sharing is caring! 💪
#DigitalForensics #MacForensics #AppleForensics #FujiApp #Fuji
https://www.linkedin.com/posts/activity-7318758583553167361-q9Br/
In my LinkedIn post I dive into the questionable promises of the #NETRE suite by #NBFTools, which claims to perform physical acquisitions on Apple Silicon devices.
Introducing #Fuji: Forensic Unattended Juicy Imaging! Open-source software using ASR & Rsync to acquire FFS images of #Mac computers.
Try it out and share feedback!