gyunaev / macprocmonLinks
MacOS X process monitor using EndpointSecurity extension.
☆37Updated last month
Alternatives and similar repositories for macprocmon
Users that are interested in macprocmon are comparing it to the libraries listed below
Sorting:
- Tool for reverse-engineering Apple's sandbox☆60Updated 8 years ago
- Learn MacOS kernel extensions☆46Updated 7 years ago
- Updated sample code for OS X and iOS Kernel Programming book☆38Updated 6 years ago
- A kext to facilitate calling PE_enter_debugger on machines that don't respect Cmd-Ctrl-Opt-Shift-Esc☆15Updated 7 years ago
- A macOS behavior audit / event monitoring system with scope of file, process and network events (based on Endpoint Security Framework).☆48Updated 3 months ago
- A macOS IOKit objects hooker☆88Updated 8 years ago
- do not debug me☆11Updated 6 years ago
- Sample code for macOS Extensions Part 3☆24Updated 5 years ago
- Mac OS X file system filter to redirect file operations☆42Updated 7 years ago
- Misc llvm patches☆23Updated 4 years ago
- macOS Private KPI Symbol Resolver☆49Updated 8 years ago
- macOS notes☆118Updated 6 years ago
- Utility to manipulate codesigned application in Mac OS X. Demonstrate the use of csops system call.☆79Updated last year
- Experiment to attempt to build Apple's dyld tools.☆62Updated 5 years ago
- A simple demonstration of the macOS Network Extension☆16Updated 4 years ago
- A tool for debugging macOS virtual machines☆112Updated 5 years ago
- Sniffing on port messages☆28Updated 9 years ago
- Hopefully an insightful XPC tracer that helps vulerability research by tracing server and client call stacks☆19Updated 3 years ago
- Checks macOS for Kernel Task Port. It may help detect intrusive kexts that would leak the kernel task.☆23Updated 2 years ago
- A library to execute code in the context of other processes on iOS 11.☆82Updated 7 years ago
- IDA plugin to Display Mach-O headers☆21Updated 13 years ago
- This tool will help to fix the Mach-O header of iOS kernel which dump from the memory. So that IDA or function symbol-related tools can l…☆23Updated 8 years ago
- runtime spy elf with android/linux and macho with macOS/IOS☆35Updated 8 years ago
- Simple Kernel Extension to read and write Kernel Memory☆14Updated 3 years ago
- dyld_shared_cache processing / Single-Image loading for BinaryNinja☆88Updated last year
- CVE-2018-4280: Mach port replacement vulnerability in launchd on macOS 10.13.5 leading to local privilege escalation and SIP bypass.☆58Updated 7 years ago
- ios kernel class tree☆23Updated 6 years ago
- IDA loader for Apple SecureROM☆13Updated 6 years ago
- Modular binary injection framework☆18Updated 5 years ago
- Binary Ninja plugin & workflow to help analyze Objective-C code☆52Updated 4 months ago