droe / xnumon
monitor macOS for malicious activity
☆230Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for xnumon
- The current repository contains all the scripts needed to build kernel-mode mac-a-mal malicious activity hooking on macOS.☆82Updated 6 years ago
- [⛔️ Deprecated] Venator is a python tool used to gather data for proactive detection of malicious activity on macOS devices.☆176Updated 4 years ago
- Parser for OSX/iOS FSEvents Logs☆236Updated 7 months ago
- Presentation Archives for my macOS and iOS Related Research☆239Updated last month
- Collection of forensics artifacts location for Mac OS X and iOS☆326Updated 3 years ago
- Mac OS X Memory Analysis Toolkit☆165Updated 8 years ago
- process info/monitoring library for macOS☆414Updated 3 years ago
- example project, utilizing Proc Info library☆67Updated 3 years ago
- The current repository contains all the scripts needed to complement kernel-mode mac-a-mal malicious activity hooking on macOS to Cuckoo …☆46Updated 6 years ago
- A macOS <= 10.14.3 Keychain exploit☆247Updated 5 years ago
- Python script to parse the Most Recently Used (MRU) plist files on macOS into a more human friendly format.☆101Updated 6 years ago
- Mac OS X rootkit - for learning purposes☆127Updated 10 years ago
- Proof of concept MacOS post exploitation tool written in Swift. Designed as a POC for blue teams to build macOS detections. Author: Cedri…☆116Updated 3 years ago
- This is a malware analyzer for Mac OS X that extends the Cuckoo Sandbox project (https://cuckoosandbox.org/)☆21Updated 8 years ago
- incident response tool for iOS devices☆49Updated 2 years ago
- Automatically exported from code.google.com/p/pac4mac☆40Updated 5 years ago
- Every OS X/ macOS white paper☆114Updated 4 years ago
- XNU Rootkit Framework☆124Updated 9 years ago
- A simple auditing utility for macOS☆282Updated 3 years ago
- Differential Analysis of Malware in Memory☆209Updated 7 years ago
- OpenBSM open audit implementation☆165Updated 2 weeks ago
- A module to expose the Endpoint Security library to Swift☆20Updated 5 years ago
- Volatility plugin to extract FileVault 2 VMK's☆49Updated 3 years ago
- VolatilityBot – An automated memory analyzer for malware samples and memory dumps☆263Updated 3 years ago
- osquery extensions by Trail of Bits☆262Updated last year
- OSX Events Monitor☆21Updated 6 years ago
- Python script to decode common encoded PowerShell scripts☆215Updated 6 years ago
- Bit9 + Carbon Black Threat Intelligence☆81Updated 8 years ago
- An OS X analyzer for Cuckoo Sandbox project☆57Updated 9 years ago