

- Mac target disk mode usb c pro#
- Mac target disk mode usb c software#
- Mac target disk mode usb c password#
- Mac target disk mode usb c mac#
Note: the host Mac will need to have either a USB 3.0 port, USB-C port, Thunderbolt 2 port, or Thunderbolt 3 port to be compatible with Target Disk Mode for the newer Macs. Attach the source Mac while in Target Disk Mode to a host Mac that can be booted to Digital Collector and perform the Data Collection using the host Mac. If the Secure Boot setting does not allow booting to external media or you are acquiring the latest MacBook Pro, then place the Mac in Target Disk Mode.
Mac target disk mode usb c password#
Note- if FileVault 2 is enabled, the password or recovery key will need to be entered to decrypt the additional encryption before collecting the data.
Mac target disk mode usb c software#
Mac hardware that has the Apple T2 chip integrates security into both software and hardware to provide encrypted-storage capabilities. Note- as Target Disk Mode is not write-protected, we recommend booting the host Mac to Cellebrite Digital Collector or using SoftBlock (write-blocking software) so that the source Mac is attached as read-only.

Instructions can be found on Apple’s site here and here. Switching these settings requires using the Startup Security Utility and entering an admin account password. This means in order to boot an external device such as Digital Collector or another imaging tool, the Secure Boot setting must be switched to “Allow booting from external media” and “No Security”. By default, Mac hardware with T2 chip is shipped from Apple with the “Full Security” Secure Boot setting and disallows booting from external media. With the introduction of the T2 chip, Apple added the Secure Boot feature, ensuring only a legitimate and trusted operating system can load at startup. This Apple Support page provides the list of Macs with Apple T2 chip.Īfter conducting tests with the new hardware, we discovered two primary issues that can impact a forensic examination, the Secure Boot feature, and built-in SSD encryption.
Mac target disk mode usb c pro#
Many examiners are asking “How does the T2 chip impact examining data from this new hardware?”Īt the time of this article, the T2 chip is included in the iMac Pro and most 2018 MacBook Pro models. Apple grabbed the attention of forensic examiners everywhere when they released hardware with new T2 chip technology in December 2017.
