gyunaev / macprocmon
MacOS X process monitor using EndpointSecurity extension.
☆35Updated 3 years ago
Alternatives and similar repositories for macprocmon:
Users that are interested in macprocmon are comparing it to the libraries listed below
- A macOS behavior audit / event monitoring system with scope of file, process and network events (based on Endpoint Security Framework).☆44Updated 2 months ago
- Sample code for macOS Extensions Part 3☆24Updated 5 years ago
- Learn MacOS kernel extensions☆46Updated 7 years ago
- Misc llvm patches☆23Updated 3 years ago
- Tool for reverse-engineering Apple's sandbox☆56Updated 7 years ago
- Updated sample code for OS X and iOS Kernel Programming book☆37Updated 6 years ago
- macOS Private KPI Symbol Resolver☆49Updated 8 years ago
- X-Monitor is an open-source, extensible event monitoring tool for macOS that provides security professionals with the ability to perform …☆18Updated 10 months ago
- Utility to manipulate codesigned application in Mac OS X. Demonstrate the use of csops system call.☆75Updated last year
- A kext to facilitate calling PE_enter_debugger on machines that don't respect Cmd-Ctrl-Opt-Shift-Esc☆15Updated 6 years ago
- A collection of CVE POC code☆11Updated 5 years ago
- ios kernel class tree☆23Updated 5 years ago
- do not debug me☆11Updated 5 years ago
- Sniffing on port messages☆25Updated 8 years ago
- A library to execute code in the context of other processes on iOS 11.☆82Updated 6 years ago
- Scripts were written by me☆19Updated this week
- App sandbox escapes for macOS☆28Updated 4 years ago
- slightly modified version of jonathan levins lsdtrip bin available at http://newosxbook.com/tools/lsdtrip.html☆18Updated last year
- A macOS IOKit objects hooker☆87Updated 7 years ago
- Mac OS X file system filter to redirect file operations☆42Updated 7 years ago
- XPC and Friends (libxpc, launchd and soon xpc.framework)☆61Updated 5 months ago
- Checks macOS for Kernel Task Port. It may help detect intrusive kexts that would leak the kernel task.☆21Updated 2 years ago
- Binary Format of iOS 13 Sandbox Profile Collection☆51Updated 5 years ago
- A simple demonstration of the macOS Network Extension☆15Updated 3 years ago
- Modifications to Apple's dyld project to fix Objective-C information when extracting dyld_shared_cache from macOS Big Sur to help Hopper …☆146Updated 4 years ago
- A RootKit for macOS that can perform kernel read/write, hook kernel and userspace functions, set custom conditional breakpoints, etc☆23Updated 2 years ago
- fG!'s crackme #1 source code☆35Updated 11 years ago
- Simple Kernel Extension to read and write Kernel Memory☆15Updated 2 years ago
- macOS notes☆118Updated 5 years ago
- C Library for Apple Firmware (Amalgam)☆28Updated 3 years ago