its-a-feature / offensive_macos
Tracking of offensive macOS tooling, blogs, and related helpful information
☆157Updated 2 months ago
Alternatives and similar repositories for offensive_macos:
Users that are interested in offensive_macos are comparing it to the libraries listed below
- macOS Initial Access Payload Generator☆299Updated last year
- Collection of macOS persistence methods and miscellaneous tools in JXA☆268Updated last year
- Swift 5 macOS agent☆102Updated 6 months ago
- Objective-C library and console to interact with Heimdal APIs for macOS Kerberos☆144Updated last year
- ☆99Updated 4 years ago
- Unit tests for blue teams to aid with building detections for some common macOS post exploitation methods.☆106Updated 2 years ago
- JXA situational awareness helper by simply reading specific files on a filesystem☆73Updated 2 years ago
- A macOS enumeration tool inspired by harmjoy's Windows-based Seatbelt enumeration tool. Author: Cedric Owens☆330Updated 2 years ago
- Payload designed for targeting Jamf enrolled devices.☆37Updated last year
- JavaScript for Automation (JXA) tool to do Active Directory enumeration.☆100Updated 2 years ago
- Interact with Chromium-based browsers' debug port to view open tabs, installed extensions, and cookies☆165Updated last year
- macOS persistence tool☆221Updated 3 years ago
- JXA and swift code that can perform some macOS situational awareness without generating TCC prompts.☆38Updated 2 years ago
- JavaScript for Automation (JXA) macOS agent☆69Updated this week
- JXA implementation of some SwiftBelt functions. Author: Cedric Owens☆42Updated last year
- ☆115Updated 3 years ago
- macOS Offensive Tools☆265Updated last year
- A proof of concept for a clickjacking attack on macOS.☆94Updated last year
- Python3 script to generate a macro to launch a Mythic payload. Author: Cedric Owens☆46Updated 3 years ago
- LDAP Querying without the Suck☆98Updated 3 months ago
- A Red Team tool for exfiltrating sensitive data from Confluence pages.☆107Updated last year
- ☆103Updated 4 months ago
- Apfell Golang macOS/Linux/Windows implant☆88Updated 3 years ago
- Proof of concept MacOS post exploitation tool written in Swift. Designed as a POC for blue teams to build macOS detections. Author: Cedri…☆119Updated 4 years ago
- JXA script to allow programmatic persistence via macOS Calendar.app alerts.☆41Updated 4 years ago
- Uses Apple's MDM protocol to backdoor a device with a malicious profile.☆52Updated 3 years ago
- StandIn is a small .NET35/45 AD post-exploitation toolkit☆253Updated 3 years ago
- ObjectiveC CLI tool for interacting with macOS Keychain☆77Updated 2 years ago
- ☆186Updated 2 years ago
- ☆162Updated 2 years ago