Legal Cyber Academy
ToolPaidCurrent

Belkasoft X

Belkasoft · 2026

Access and status

Cost

Paid

Costs money to buy outright — a book, a licence, a registration.

Status

Current

Current as at the verification date below. Standards and tools both move — confirm at source before you rely on it.

What it is

Belkasoft's flagship acquisition and analysis product, covering computer, mobile, drone, vehicle, and cloud evidence in one case. It is split by customer type: Belkasoft X Forensic is offered to government customers, while Belkasoft X Corporate targets businesses for internal investigations and ediscovery. Belkasoft also publishes free Triage and Live RAM Capturer utilities.

Who it is for, and when

Belkasoft X is the pragmatic middle option in the commercial market — narrower in reach than AXIOM or Cellebrite but meaningfully cheaper and sold on a perpetual rather than term licence, which suits smaller practices and expert consultants who cannot justify an annual enterprise subscription. Its coverage of chat applications, browsers, and drone data is respectable, and the free Live RAM Capturer is a useful standalone memory acquisition tool regardless of whether you licence the suite.

What it does not cover

Pricing is not published — the page directs you to sales — and the government-versus-corporate product split means the edition available to you may not be the one described in published literature. Artefact coverage is smaller than the market leaders', so a negative result carries less weight and should be checked against another tool. Mobile extraction depth in particular does not match a dedicated mobile vendor, and the suite offers nothing for reverse engineering or network analysis.

Go to the source

Open at belkasoft.com (opens in a new tab)

https://belkasoft.com/x

Details

Type
Tool
Written for
Working examinerWorking examiner
Publisher
Belkasoft
Year
2026
Topics
commercial-suite, mobile, cloud, memory-forensics, browser-forensics, reporting
Checked at source
  • Cellebrite's mobile forensics flagship, now branded Inseyets and positioned within the company's broader Case-to-Closure platform. The familiar component names persist inside it rather than having been retired: UFED, Physical Analyzer, Kiosk, CFID, Reader, and C-TEK are all listed as parts of the Inseyets suite.

  • A commercial digital forensics platform that acquires, processes, and reports on computer, mobile, cloud, and vehicle data in a single case, organised around artefact recovery rather than raw file system browsing. AXIOM Cyber is the variant aimed at corporate incident response, internal investigations, and ediscovery, adding remote endpoint collection.

  • A commercial mobile forensics family from the Swedish vendor MSAB, sold as separate modules rather than one product: XRY Logical for live and file system extraction, XRY Physical for bypassing the operating system, XRY Pro combining advanced extraction and decryption, plus XRY Cloud, XRY Photon for screen-scraping app data, and XRY Camera for device documentation.

  • A family of open-source Python parsers for mobile and returns data: iLEAPP for iOS logs, events and plists, ALEAPP for Android, and RLEAPP for returns and records from cloud and carrier providers. All three are released very frequently and are among the most actively maintained tools in mobile forensics.

  • A public repository of forensic disk images, memory dumps, mobile extractions, network packet captures and file corpora assembled for forensic research and teaching. The data is held in Amazon S3 (s3://digitalcorpora/) under the AWS Open Data Sponsorship Program and served from downloads.digitalcorpora.org.