PaulDotCom mailing list archives

Open Source forensic tools and bitlocker


From: "Gibson, Samuel" <gibsons () my uwstout edu>
Date: Thu, 17 Feb 2011 22:36:43 +0000

Hello List,

Does anyone have any suggestions as to how to image a bitlocker encrypted drive so that the image may be accessed later 
by open source or free forensic tools?  Does anyone know of a application that can mount the disk image and be supplied 
a key to decrypt it?  Should I just look at the live system, or should I decrypt the whole thing?

Thanks,
Sam

_______________________________________________
Pauldotcom mailing list
Pauldotcom () mail pauldotcom com
http://mail.pauldotcom.com/cgi-bin/mailman/listinfo/pauldotcom
Main Web Site: http://pauldotcom.com

Current thread: