Legal Cyber Academy
ToolPaidCurrent

Magnet AXIOM and AXIOM Cyber

Magnet Forensics · 2026

Access and status

Cost

Paid

Costs money to buy outright — a book, a licence, a registration.

Status

Current

Current as at the verification date below. Standards and tools both move — confirm at source before you rely on it.

What it is

A commercial digital forensics platform that acquires, processes, and reports on computer, mobile, cloud, and vehicle data in a single case, organised around artefact recovery rather than raw file system browsing. AXIOM Cyber is the variant aimed at corporate incident response, internal investigations, and ediscovery, adding remote endpoint collection.

Who it is for, and when

AXIOM is one of the two or three suites an examiner is most likely to meet in practice, and its strength is breadth in one case file: a phone extraction, a laptop image, and a cloud account acquired under warrant or consent can be searched and timelined together. Artefact coverage for chat applications, browsers, and cloud services is maintained aggressively, which is the main reason firms pay for it rather than assembling open-source equivalents. AXIOM Cyber's remote collection matters when the custodian and the device are in another country.

What it does not cover

Pricing is quote-based — Magnet publishes none — so budget and renewal terms have to be negotiated, and licences are per-examiner. Artefact-driven analysis is a convenience that can become a blind spot: the suite shows you what its parsers know about, so anything outside that coverage needs manual file system work or an open-source parser, and its parsed output should be verified against the underlying database before it goes in a report. It is not a reverse engineering or network forensics tool.

Go to the source

Open at magnetforensics.com (opens in a new tab)

https://www.magnetforensics.com/products/magnet-axiom/

Details

Type
Tool
Written for
Working examinerAdvancedWorking examiner, Advanced
Publisher
Magnet Forensics
Year
2026
Topics
commercial-suite, mobile, cloud, file-systems, incident-response, reporting, ediscovery
Checked at source
  • Belkasoft's flagship acquisition and analysis product, covering computer, mobile, drone, vehicle, and cloud evidence in one case. It is split by customer type: Belkasoft X Forensic is offered to government customers, while Belkasoft X Corporate targets businesses for internal investigations and ediscovery. Belkasoft also publishes free Triage and Live RAM Capturer utilities.

  • Cellebrite's mobile forensics flagship, now branded Inseyets and positioned within the company's broader Case-to-Closure platform. The familiar component names persist inside it rather than having been retired: UFED, Physical Analyzer, Kiosk, CFID, Reader, and C-TEK are all listed as parts of the Inseyets suite.

  • The long-established Forensic Toolkit, originally AccessData's and now owned and sold by Exterro, which acquired the product line. It covers processing of computer and mobile data, distributed indexing and keyword search, artefact analysis, timeline visualisation, and Mac file system examination.

  • A commercial mobile forensics family from the Swedish vendor MSAB, sold as separate modules rather than one product: XRY Logical for live and file system extraction, XRY Physical for bypassing the operating system, XRY Pro combining advanced extraction and decryption, plus XRY Cloud, XRY Photon for screen-scraping app data, and XRY Camera for device documentation.

  • Magnet Forensics' online DFIR conference, delivered over several weeks of sessions. The 2026 edition has taken place and its recordings are published as a free replay library, searchable by speaker, theme, language and week, covering mobile forensics, cloud investigations, video analysis and corporate investigations.