WithSecureLabs / Jamf-Attack-Toolkit
Suite of tools to facilitate attacks against the Jamf macOS management platform.
☆179Updated 3 years ago
Alternatives and similar repositories for Jamf-Attack-Toolkit:
Users that are interested in Jamf-Attack-Toolkit are comparing it to the libraries listed below
- Post-Infection Collection Toolkit☆93Updated last year
- https://wojciechregula.blog/post/macos-red-teaming-get-ad-credentials-from-nomad/☆39Updated 2 years ago
- ☆67Updated 3 years ago
- Aftermath is a free macOS incident response framework☆30Updated last month
- An osquery extension for endpoint engineers☆104Updated this week
- ☆40Updated 4 years ago
- Swift Command line tool used for proactive detection of malicious activity on macOS systems.☆68Updated 4 years ago
- HOWTO incorporate the NIST 'macOS Security Compliance Project' Into Jamf Pro☆47Updated 2 years ago
- Payload designed for targeting Jamf enrolled devices.☆37Updated last year
- [⛔️ Deprecated] Venator is a python tool used to gather data for proactive detection of malicious activity on macOS devices.☆176Updated 4 years ago
- Pokes users about outstanding security risks found by Crowdstrike Spotlight or vmware Workspace ONE so they secure their own endpoint.☆28Updated this week
- A binary authorization and monitoring system for macOS☆93Updated this week
- Scripts (python3 and Swift) for macOS to recursively check /Applications and also check /usr/local/bin, /usr/bin, and /usr/sbin for binar…☆93Updated 2 years ago
- Scripts from my book OS X Incident Response Scripting and Analysis -> https://www.amazon.com/dp/012804456X/ref=cm_sw_r_tw_dp_U_x_fQeLAb68…☆49Updated 8 years ago
- Uses Apple's MDM protocol to backdoor a device with a malicious profile.☆51Updated 3 years ago
- ☆99Updated 3 years ago
- Aftermath is a free macOS IR framework☆484Updated last month
- A repository for open-source resources created for use with or alongside Jamf Protect.☆189Updated 2 months ago
- Collection of macOS persistence methods and miscellaneous tools in JXA☆265Updated last year
- Simple Docker-based quickstart for osquery, Fleet, and ELK stack☆62Updated last year
- This contains all the CrowdStrike API work I've done☆20Updated 5 years ago
- Tracking of offensive macOS tooling, blogs, and related helpful information☆157Updated 2 months ago
- Local Administrator Password Solution for Mac☆139Updated 6 years ago
- JXA situational awareness helper by simply reading specific files on a filesystem☆72Updated 2 years ago
- ☆101Updated 2 years ago
- Objective-C library and console to interact with Heimdal APIs for macOS Kerberos☆143Updated last year
- Phorion Kronos is a macOS security tool designed to enhance Apple's Transparency Consent and Control (TCC) security and privacy mechanism…☆72Updated last year
- ☆18Updated 3 years ago