Sentinel-One / foss
☆38Updated last year
Related projects ⓘ
Alternatives and complementary repositories for foss
- Parse the Mac Quickook index.sqlite database☆53Updated 8 years ago
- Audit Preference Pane and Log Reader for OS X☆39Updated 11 years ago
- OSX Events Monitor☆21Updated 6 years ago
- XProtect configuration files stats☆20Updated 6 years ago
- Python script to parse the Most Recently Used (MRU) plist files on macOS into a more human friendly format.☆101Updated 6 years ago
- Notifies the user when macOS Security components like Gatekeeper and XProtect have been updated☆60Updated 3 years ago
- This script is used in the recovery partition to automatically disable SIP.☆29Updated 8 years ago
- example project, utilizing Proc Info library☆67Updated 3 years ago
- Scripts from my book OS X Incident Response Scripting and Analysis -> https://www.amazon.com/dp/012804456X/ref=cm_sw_r_tw_dp_U_x_fQeLAb68…☆49Updated 8 years ago
- Golang command line tool for the macOS Endpoint Security Framework☆29Updated 4 years ago
- Resources for HFS+ Forensics☆35Updated 8 years ago
- Objective-See's Products☆12Updated 9 years ago
- Swift Command line tool used for proactive detection of malicious activity on macOS systems.☆68Updated 4 years ago
- Keyjacker enumerates Mac keychains and displays plain text passwords.☆23Updated 7 years ago
- Replacement for BootPicker, supports EFI boot methods for Windows☆17Updated 5 years ago
- Scripts for maintaining AutoDMG's UpdateProfiles.plist☆60Updated 2 years ago
- Python utilities related to plists☆52Updated 9 months ago
- Mapping XProtect's obfuscated malware family names to common industry names.☆82Updated 6 months ago
- Recipes for the Mac OS X system administration tool, Autopkg☆13Updated 2 months ago
- macOS triage is a python script to collect various macOS logs, artifacts, and other data.☆26Updated 3 years ago
- Slides and material from my conference presentations☆14Updated 7 months ago
- A Mac app that uses the Duo Labs EFIgy API to inform you about the state of your EFI firmware.☆40Updated 5 years ago
- System hack to disable and toggle WebRTC in macOS Safari☆14Updated 6 years ago
- A module to expose the Endpoint Security library to Swift☆20Updated 5 years ago
- [⛔️ Deprecated] Venator is a python tool used to gather data for proactive detection of malicious activity on macOS devices.☆176Updated 4 years ago
- A minimal malware analysis sandbox for macOS☆26Updated last year
- ☆33Updated 12 years ago
- SecurityAgentPlugin for monitoring keychain password synchronization☆95Updated 4 years ago
- View all modules on that are loaded in the OS kernel☆66Updated last year