Skip to content

Full-Disk Encryption (FDE)

Definition

A storage protection model in which the entire partition is encrypted with a key derived from the user's passcode and hardware-bound identifiers. A physical image of an FDE device is unreadable ciphertext without the key.

Related terms

Bootloader
Firmware that runs immediately after power-on to verify, load, and hand control to the operating system. A locked bootloader refuses to execute...
Chip-Off Acquisition
A physical extraction method in which the flash memory chip is desoldered from the device's circuit board and read directly with specialised...
EDL Mode (Emergency Download Mode)
A Qualcomm diagnostic protocol embedded in the Primary Boot Loader (PBL) that activates before the main OS and accepts raw memory read...
File-Based Encryption (FBE)
An Android encryption model introduced in Android 7.0 in which each file is encrypted with a separate key derived from the user...
NAND Flash
The type of non-volatile memory used in all modern mobile device storage. Data is written to pages grouped into blocks; erasure operates...

Explained in

  • Physical Acquisition TechniquesA storage protection model in which the entire partition is encrypted with a key derived from the user's passcode and hardware-bound identifiers. A physical im...

Your journey to becoming a forensic professional starts here.

Practice with mock tests, learn from structured notes, and get your questions answered by a global forensic community, all in one place.