Decrypting Full Disk Encryption with Dissect
ID: d9d24569-f733-536a-9ee1-57bd456a253c
STIX ID: report--d9d24569-f733-536a-9ee1-57bd456a253c
Feed Name: Fox-IT blog
This blog post describes Dissect v3.17’s new capabilities for working with encrypted disks (BitLocker and LUKS). It demonstrates using recovery keys, passphrases, and a keychain CSV to unlock Windows and Linux VM disks, extract files from desktops, and produce a decrypted raw disk image via the fve-dd utility, including command examples and sample output.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
