What an incredible year at Oxygen Forensics, Inc. in 2018! Not only have we continued to gain more customers from around the world, we have brought to the #DFIR community some amazing solutions to today’s digital forensic problems. Oh, we have been busy; however, one thing remains, our customers will always be first! Our slogan of helping to make this world safer was supported by these incredible innovations of 2018 and our valued customers. Let’s look at a few we are extremely proud of in all areas of forensics to include mobile, cloud, drone, IoT, and even computer.
LOCKED DEVICE SUPPORT. We added additional supported devices to our innovative screen lock bypass methods by adding the EDL method for Android devices based on selected Qualcomm chipsets. Our cutting-edge method supports a wide range of Qualcomm chipsets and works on 500+ Android devices of 26 manufacturers that include Acer, Alcatel, Asus, Coolpad, Gionee, Huawei, Lenovo, LG, Micromax, Motorola, Nokia, OnePlus, Oppo, Xiaomi, ZTE, etc. We also significantly extended and updated our Spreadtrum physical extraction method by adding support for over 100 new Android devices with 4, 8 and 16 Gb of RAM. Our updated algorithm allows for easy turn-key addition of new Spreadtrum models when requested. And finally, we added the ability to extract available photos, databases and files from a wide range of locked Samsung devices via MTP.
PHYSICAL IMAGE DECRYPTION. It’s all too common with today’s modern Android devices and their encrypted user partition. This problem, which often makes a physical extraction useless, is and will continue to be a hurdle for investigators. This year we added the ability to brute force and decrypt physical extractions of LG devices running Android OS 6.x and 7.x. You can either find the password using the built-in Passware module or enter the known password manually.
We owned 2018 with each new release by introducing industry-first methods of WhatsApp data extraction. Our new WhatsApp QR code method allows investigators to acquire all WhatsApp data using a WhatsApp QR token extracted by our KeyScout utility from a Windows computer. That means you can acquire WhatsApp data without the phone! It gets even better! Oxygen Forensic Detective also offers two more industry-exclusive WhatsApp forensic features – WhatsApp backup decryption via phone number and access to the WhatsApp Cloud Server (implemented in 2017). It must be mentioned – we support 60 unique cloud services; many of them are ONLY supported in our software!
DRONE SUPPORT. In 2018 we added physical extraction of DJI Spark and Mavic Pro drones via rooting which continues to remain an industry unique feature. Now you can gain access to drone flight logs, telemetry, and exclusive metadata using a standard USB cable. An additional unique feature, only found in, Oxygen Forensic® Detective, is the ability to extract valuable user data from from DJI cloud and SkyPixel via tokens extracted from a mobile device.
IOT DEVICE FORENSICS
DIGITAL ASSISTANTS. Digital assistants are already a part of everyday life and have been successfully used to solve several crimes. Oxygen Forensic® Detective brought investigators the power to extract data from Amazon Alexa and Google Home from both a mobile device and their cloud services. Access to these device cloud stores was made simple with a username and password or token. These valuable pieces of information can be found and extracted from both a computer or mobile device. Detective acquires valuable information including account and device details, contacts, messages, calendars, notifications, lists, activities, skills, and more.
HEALTH-TRACKING WEARABLES. Health-tracking wearables and apps can record heart rate, sleep periods, location, and more. Data from these common every-day devices have already assisted law enforcement in several high-profile crimes. Oxygen Forensic® Detective in 2018 gave investigators the ability to extract locations, workouts, health and other valuable data from Fitbit, Google Fit, and Samsung Health both from both mobile devices and cloud services.
We introduced data extraction from smartwatches based on Mediatek chipset. Oxygen Forensic® Detective now performs logical acquisition of MTK smartwatches and allows forensic experts to extract device model, contacts, calls, messages, multimedia files, and other valuable data. We supported over 30 smartwatch models in 2018!
PASSWORDS AND TOKENS. This year we introduced our portable KeyScout utility that armed investigators with a tool to seek and locate tokens and passwords saved in desktop web browsers and other applications, like Internet Explorer, Google Chrome, Mozilla Firefox, Opera, and Mozilla Thunderbird. An added bonus, KeyScout finds credentials in iCloud for Windows, WhatsApp Desktop, Telegram Desktop and Unigram apps and also collects the passwords to Wi-Fi hot spots. The collected credentials can then be imported into Oxygen Forensic® Cloud Extractor for immediate use.
DATA PARSING AND ANALYSIS
JETENGINE. We closed 2018 with our innovative 64-bit module – Oxygen Forensic® This powerful forensic utility allows investigators to quickly parse volumes of data and leverage advanced analytical tools to quickly pinpoint and quantify evidence. The days of slowly processing large data sets from mobile devices, IoT sources, cloud services, and drones are over! Now you can extract data in Oxygen Forensic® Detective and then import it to Oxygen Forensic® JetEngine for fast data parsing and analysis.
The numbers will always tell a better story! As of 2018 Oxygen Forensic® Detective supports data extraction from 24977 unique device profiles, 453 unique apps, 8806 app versions and 60 cloud services! We are looking forward to a great 2019 with our continued great customer support, innovative research and development team, fabulous staff, and the best customers in the world.