The Industry-Leading iOS Acquisition Solution

Magnet Forensics and Grayshift, the makers of GrayKey, have partnered to offer law enforcement agencies the most advanced investigations on iOS devices available today — advancing our common goal to empower law enforcement agencies to seek justice and protect the innocent.

Magnet AXIOM and GrayKey—The Most Advanced Solution for iOS Investigations

Use GrayKey as Your Primary Tool for Acquiring Images from Locked and Unlocked iOS Devices

GrayKey is the most advanced solution to recover data from an iOS device including the full file system, decrypted keychain and process memory whereas other tools are limited to an iTunes backup only.

When devices are lawfully acquired, GrayKey also provides the benefit of unlocking iOS devices when the passcode is unknown preserving the chain of custody since the devices no longer have to physically leave the forensic lab.

Built for law enforcement, GrayKey is a cost-effective solution that labs of any size can use in-house.

Magnet AXIOM: The Best Solution for Processing GrayKey Images

GrayKey Diagram


With integration of GrayKey into AXIOM, you can quickly and easily load GrayKey images for analysis directly from AXIOM.

  • AXIOM has the most advanced parsing and carving techniques which finds more evidence than any other tool, including 25% more pictures.
  • Get more detailed information about what someone was doing at any given time and where, with artifacts like KnowledgeC, iOS Wallet, geolocation data, Screen Time, and more.
  • Analyze the full file system (including iTunes backup-style images) and decrypted Keychain from iOS devices and find evidence that other tools miss.
  • Memory images could contain valuable evidence like messages, call logs, and email. AXIOM natively supports the analysis of memory from GrayKey images without the need to install third-party conversions or plugins.
  • iOS images contain a lot of native files and raw data. Use AXIOM to cut through the noise of data and save time during your investigations by quickly surfacing only relevant evidence rather than unactionable data.
  • Discover new artifacts with Dynamic App Finder to automatically scan your file system and memory images for relevant chat, browser, geolocation, and identifier data.
  • AXIOM is a complete digital investigation platform that gives you the power to analyze evidence from GrayKey images alongside data from other computer, cloud, social media, and mobile evidentiary sources.

Learn More About GrayKey