ConradSun / NuwaStone
A macOS behavior audit / event monitoring system with scope of file, process and network events (based on Endpoint Security Framework).
☆45Updated 4 months ago
Alternatives and similar repositories for NuwaStone:
Users that are interested in NuwaStone are comparing it to the libraries listed below
- X-Monitor is an open-source, extensible event monitoring tool for macOS that provides security professionals with the ability to perform …☆19Updated last year
- MacOS X process monitor using EndpointSecurity extension.☆35Updated 4 years ago
- Sample code for macOS Extensions Part 3☆24Updated 5 years ago
- Updated sample code for OS X and iOS Kernel Programming book☆37Updated 6 years ago
- Mach-O file parser.☆54Updated 3 weeks ago
- This is a complete Xcode project of the Endpoint Security Demo gist: https://gist.github.com/Omar-Ikram/8e6721d8e83a3da69b31d4c2612a68ba☆19Updated 4 months ago
- Small demo programs showing work with various macOS frameworks and facilities that can be used to monitor (and in some cases to control) …☆14Updated 4 years ago
- Yet another xpc sniffer☆126Updated 3 months ago
- Learn MacOS kernel extensions☆46Updated 7 years ago
- A runtime ObjC class-dump☆72Updated 4 months ago
- slightly modified version of jonathan levins lsdtrip bin available at http://newosxbook.com/tools/lsdtrip.html☆19Updated last year
- A simple demonstration of the macOS Network Extension☆15Updated 4 years ago
- ☆11Updated 11 months ago
- Secure example of an XPC helper written in Swift☆108Updated 5 years ago
- C++ library for com.apple.network.statistics kernel events on MacOS/OS X/Darwin☆21Updated 4 years ago
- Apple's EvenBetterAuthorization Sample Project☆44Updated 5 years ago
- Guessed headers of non-public Apple SDK☆40Updated 4 months ago
- symbol dumps of iOS shared caches☆34Updated 2 years ago
- Read property lists embedded inside of Mach-O executables (commonly Command Line Tools)☆17Updated 2 years ago
- Bidirectional XPC between two (or more) processes without a MachService daemon☆54Updated 3 years ago
- A DNS Monitor, leveraging Apple's NEDNSProxyProvider/Network Extension Framework☆190Updated 8 months ago
- Kass: A security research tool.☆81Updated this week
- macOS notes☆118Updated 5 years ago
- Hopper Disassembler v5 scripts, focus on iOS/macOS☆26Updated 2 years ago
- A cross-platform library to parse Objective-C type encoding.☆42Updated 8 months ago
- A MacOS VFS isolation layer to redirect file I/O operations.☆30Updated 7 years ago
- Tool for reverse-engineering Apple's sandbox☆56Updated 8 years ago
- Mac OS X file system filter to redirect file operations☆42Updated 7 years ago
- A macOS command-line tool to dump the contents of dyld shared cache files.☆37Updated 3 weeks ago
- Objective-C wrapper around SecCertificateRef☆36Updated last year