ainfosec / MacResponse-Forensics
☆33Updated 13 years ago
Alternatives and similar repositories for MacResponse-Forensics
Users that are interested in MacResponse-Forensics are comparing it to the libraries listed below
Sorting:
- OSX Security Compliance & Hardening☆49Updated 9 years ago
- A small utility to read and write to Macs physical memory using default AppleHWAccess.kext.☆25Updated 9 years ago
- Integrity checking script for Apple Thunderbolt to Ethernet adapters, to check for attacks similar to Thunderstrike 2☆26Updated 9 years ago
- OSX Events Monitor☆22Updated 6 years ago
- macOS XProtect definition files☆40Updated 3 years ago
- Automatically exported from code.google.com/p/pac4mac☆40Updated 6 years ago
- Resources for HFS+ Forensics☆36Updated 9 years ago
- Volatility plugin to extract FileVault 2 VMK's☆50Updated 3 years ago
- Research about malware that infects the EFI and SMC of Apple MacBooks.☆57Updated last month
- PoC kext to disable OS X anti-virus software☆15Updated 13 years ago
- BONOMEN - Hunt for Malware Critical Process Impersonation☆48Updated 4 years ago
- An OSX exploitation helper library.☆35Updated 9 years ago
- Decrypts local iOS backups and recreates file system, with a framework for automatically extracting useful information☆42Updated 9 years ago
- OS X rootkit loader version #1☆18Updated 10 years ago
- a collection of yara rules for binary analysis☆24Updated 7 years ago
- Recover event log entries from an image by heurisitically looking for record structures.☆27Updated 9 years ago
- Some tools for EFI hackery☆41Updated 13 years ago
- iOS forensics utility☆12Updated 7 years ago
- ARDvark parses the Apple Remote Desktop (ARD) files to pull out application usage, user activity, and filesystem listings.☆35Updated last year
- Integrity validator for iOS devices☆102Updated 6 years ago
- A curated list of tools for incident response☆29Updated last year
- Convert Windows Netmon Monitor Mode Wireless Packet Captures to Libpcap Format☆15Updated 5 years ago
- Collection of tools for processing storage media images☆13Updated 4 months ago
- Recon-ng modules that won't get accepted into the main distribution because of 3rd party dependencies.☆18Updated 11 years ago
- The grey fox☆25Updated 8 years ago
- MPRESS dumper for OS X☆66Updated 10 years ago
- A TrustedBSD module to control execution of binaries with suid bit set☆37Updated 10 years ago
- Supermicro IPMI/BMC Cleartext Password Scanner☆39Updated 9 years ago
- Discover potential timestamps within the Windows Registry☆18Updated 11 years ago
- Proof Of Concept for inserting code in ELF binaries.☆26Updated 11 years ago