Crescendo is a swift based, real time event viewer for macOS. It utilizes Apple's Endpoint Security Framework.
☆1,071Jul 22, 2021Updated 4 years ago
Alternatives and similar repositories for Crescendo
Users that are interested in Crescendo are comparing it to the libraries listed below
Sorting:
- A user-mode application authorization system for MacOS written in Swift☆301Sep 18, 2020Updated 5 years ago
- A command line tool for pstree-like output on macOS with additional pid capturing capabilities☆276Aug 23, 2024Updated last year
- An app to protect against process injection and suspicious file links on macOS☆229May 19, 2021Updated 4 years ago
- Process Monitor Library (based on Apple's new Endpoint Security Framework)☆493Oct 20, 2023Updated 2 years ago
- A binary authorization and monitoring system for macOS☆4,514Feb 5, 2025Updated last year
- "The missing ProcMon for macOS": Mac Monitor records Endpoint Security events and displays them for analysis.☆1,270Feb 24, 2026Updated last week
- A macOS enumeration tool inspired by harmjoy's Windows-based Seatbelt enumeration tool. Author: Cedric Owens☆340Apr 28, 2022Updated 3 years ago
- File Monitor Library (based on Apple's new Endpoint Security Framework)☆375Oct 9, 2022Updated 3 years ago
- Collection of macOS persistence methods and miscellaneous tools in JXA☆288Aug 3, 2023Updated 2 years ago
- Swift Command line tool used for proactive detection of malicious activity on macOS systems.☆67Jul 1, 2020Updated 5 years ago
- monitor macOS for malicious activity☆237Feb 5, 2025Updated last year
- ☆15May 26, 2021Updated 4 years ago
- macOS Offensive Tools☆270Sep 28, 2023Updated 2 years ago
- [⛔️ Deprecated] Venator is a python tool used to gather data for proactive detection of malicious activity on macOS devices.☆177Jul 1, 2020Updated 5 years ago
- process info/monitoring library for macOS☆425Feb 1, 2021Updated 5 years ago
- ESF modular ingestion tool for development and research.☆38Dec 21, 2021Updated 4 years ago
- macOS app to create standard or customized configuration profiles.☆1,470Jan 11, 2025Updated last year
- Golang command line tool for the macOS Endpoint Security Framework☆29Nov 25, 2019Updated 6 years ago
- macOS Security Compliance Project☆2,261Feb 18, 2026Updated 2 weeks ago
- Mac app that shows all open files, directories, sockets, pipes and devices in use by all running processes. Nice GUI for lsof.☆8,840Nov 16, 2025Updated 3 months ago
- BlockBlock provides continual protection by monitoring persistence locations.☆749Feb 24, 2026Updated last week
- Sample code for macOS Extensions Part 3☆24Feb 20, 2020Updated 6 years ago
- My swift version of the defaults command.☆29Nov 28, 2024Updated last year
- Use "Full Disk Access" permissions to read the contents of TCC.db and display it in human-readable format☆40Jul 27, 2021Updated 4 years ago
- An osquery extension for endpoint engineers☆119Jan 27, 2026Updated last month
- This is a complete Xcode project of the Endpoint Security Demo gist: https://gist.github.com/Omar-Ikram/8e6721d8e83a3da69b31d4c2612a68ba☆20Jan 5, 2025Updated last year
- Suite of tools to facilitate attacks against the Jamf macOS management platform.☆189Feb 10, 2021Updated 5 years ago
- Network Monitor☆370Oct 5, 2024Updated last year
- macOS application that makes use of the EndpointSecurity framework☆19Aug 1, 2019Updated 6 years ago
- A JXA script for enumerating running processes, printed out in a json, parent-child tree.☆14Jan 28, 2022Updated 4 years ago
- macOS (& ios) Artifact Parsing Tool☆1,003Feb 26, 2026Updated last week
- A simple auditing utility for macOS☆293Mar 20, 2021Updated 4 years ago
- A cross platform parser for Apple UnifiedLogs!☆331Feb 15, 2026Updated 2 weeks ago
- Protect your SSH keys with your Mac's Secure Enclave☆8,186Jan 6, 2026Updated last month
- A forensic evidence collection & analysis toolkit for OS X☆1,892Jun 19, 2019Updated 6 years ago
- This application gives Mac users in enterprise environments control over the administration of their machines by elevating their access l…☆1,841Feb 11, 2026Updated 3 weeks ago
- Aftermath is a free macOS IR framework☆569Sep 25, 2025Updated 5 months ago
- Notifies the user when macOS Security components like Gatekeeper and XProtect have been updated☆61Mar 12, 2021Updated 4 years ago
- A module to expose the Endpoint Security library to Swift☆20Jul 10, 2019Updated 6 years ago