LLIMAGER, developed by e-Forensics, was designed to address the evolving challenges of macOS forensic imaging. Specifically, it was created in response to the limitations of existing "dead box" solutions and the increasingly stringent security measures implemented by Apple in successive macOS releases.
LLIMAGER meets the need for robust and comprehensive forensic imaging of Mac computers by performing Full File System acquisitions. Recognizing the need for an adaptable solution, it was designed with user-friendliness in mind. Its interface is intuitive and easy to navigate, making it suitable for entry-level digital forensics examiners.
LLIMAGER leverages built-in Mac utilities, providing a versatile solution compatible with a wide range of macOS versions, both past and present. This ensures the tool remains functional across diverse system configurations.
LLIMAGER optionally collects macOS sysdiagnose, providing a comprehensive snapshot of the system's state at the time of analysis. This invaluable data is crucial for malware analysis and live incident response, as it offers insights into system processes, network activity, and hardware information that can help identify and mitigate threats.