Skip to content

Read encrypted Apple disk images with their password - #341

Merged
abrignoni merged 1 commit into
mainfrom
feat/encrypted-dmg
Sep 27, 2026
Merged

abrignoni merged 1 commit into
mainfrom
feat/encrypted-dmg

Conversation

@abrignoni

Copy link
Copy Markdown
Owner

Adds encrypted Apple disk images to raw image input (-t raw).

  • Encrypted .dmg, split .dmg with its .dmgpart files, .sparseimage and sparse bundle, AES-128 or AES-256
  • Command line: --image_password_file or --image_password_env, or asked at a terminal. The password is never taken as an argument value.
  • GUI: a masked password dialog, checked against the image before the run starts
  • Vendored qnxprobe 1.41 and ewfprobe 0.5.0

The password is held in memory for the run and is not written to the report or logs. Decryption uses PyCryptodome, already in requirements.txt.

🤖 Generated with Claude Code

Raw image input now opens an encrypted .dmg, a split .dmg with its .dmgpart
files, an encrypted .sparseimage and an encrypted sparse bundle, AES-128 or
AES-256, with the image's password. The command line takes it from
--image_password_file or --image_password_env, or asks at a terminal; the
GUI asks in a masked dialog and checks it against the image before the run
starts. The password is held in memory for the run.

The vendored readers move to qnxprobe 1.41 (d268ec9) and ewfprobe 0.5.0
(20513a1), which add the decryption. It uses PyCryptodome, already in
requirements.txt.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
@abrignoni
abrignoni merged commit 631ed33 into main Sep 27, 2026
9 checks passed
@abrignoni
abrignoni deleted the feat/encrypted-dmg branch September 27, 2026 14:12
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant