☆57Jul 1, 2024Updated last year
Alternatives and similar repositories for arm64_macOS_Syscalls
Users that are interested in arm64_macOS_Syscalls are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A JXA script for enumerating running processes, printed out in a json, parent-child tree.☆14Jan 28, 2022Updated 4 years ago
- A library to parse macOS LoginItems☆18Aug 28, 2022Updated 3 years ago
- arm64 and arm64e dylib injector☆41Feb 6, 2024Updated 2 years ago
- Helper scripts to automate the extraction of YARA rules from XProtectRemediators☆22Mar 5, 2024Updated 2 years ago
- A Swift port of some of the original PersistentJXA projects by D00MFist. Original PersistentJXA repo: https://github.com/D00MFist/Persist…☆34Apr 15, 2021Updated 5 years ago
- Serverless GPU API endpoints on Runpod - Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- A command line tool to query the Launch Services database☆15Jul 28, 2018Updated 7 years ago
- machofile is a module to parse Mach-O binary files☆95Feb 10, 2026Updated 2 months ago
- ☆22Oct 13, 2023Updated 2 years ago
- CoreFollowUp phishing attack on macOS☆15Mar 15, 2022Updated 4 years ago
- Mapping XProtect's obfuscated malware family names to common industry names.☆94Nov 14, 2025Updated 5 months ago
- ☆17Sep 29, 2023Updated 2 years ago
- Assorted, MIT licensed, threat hunting rules from @bradleyjkemp☆14Mar 11, 2022Updated 4 years ago
- Take over macOS Electron apps' TCC permissions☆224Aug 12, 2023Updated 2 years ago
- This repository contains the technique presented at SOCON2025 for stealing cookies silently from MacOS Sequoia with only root privileges☆12Mar 27, 2025Updated last year
- Serverless GPU API endpoints on Runpod - Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- https://wojciechregula.blog/post/macos-red-teaming-get-ad-credentials-from-nomad/☆43Mar 4, 2022Updated 4 years ago
- Synapse Rapid Power-up for SinkDB☆11Jun 24, 2025Updated 9 months ago
- Plugin for loading MachO kernelcache and dSYM files to Binary Ninja☆40Mar 23, 2025Updated last year
- Sniff XPC communication using Frida and Go☆159Feb 10, 2026Updated 2 months ago
- Transform any ARM macho executable to a dynamic library☆44Mar 14, 2025Updated last year
- Interact with trustcaches☆42Feb 12, 2023Updated 3 years ago
- Enumerate Location Services using CoreLocation API on macOS☆18Dec 2, 2021Updated 4 years ago
- Identifies the bytes that Microsoft Defender / AMSI Consumer flags on.☆11May 17, 2024Updated last year
- ☆19Nov 7, 2024Updated last year
- Wordpress hosting with auto-scaling - Free Trial • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Exploit for CVE-2023-38571☆13Sep 27, 2023Updated 2 years ago
- Software installation scripts for macOS systems that allows you to setup a Virtual Machine (VM) for reverse engineering macOS malware☆36Feb 24, 2026Updated last month
- Utility to manipulate codesigned application in Mac OS X. Demonstrate the use of csops system call.☆84Mar 21, 2024Updated 2 years ago
- dyld_shared_cache processing / Single-Image loading for BinaryNinja☆92Feb 25, 2026Updated last month
- Symbolic executor for Binary Ninja's MLIL☆25Oct 3, 2024Updated last year
- Swift code to programmatically execute local or hosted JXA payloads from Terminal without using the on-disk osascript binary.☆23Apr 22, 2021Updated 4 years ago
- Useless tools for exploring Virtualization.framework☆25Jun 14, 2021Updated 4 years ago
- A cross-platform library to parse Objective-C type encoding.☆43Sep 1, 2024Updated last year
- Discover which process execute a hunted binary inside macOS☆27Dec 15, 2021Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A modern Objective-C class dump based on LIEF and LLVM.☆170Jul 20, 2024Updated last year
- Use "Full Disk Access" permissions to read the contents of TCC.db and display it in human-readable format☆40Jul 27, 2021Updated 4 years ago
- Objective C dylibHijackScanner and analysis tool☆40Jul 12, 2023Updated 2 years ago
- Phorion Kronos is a macOS security tool designed to enhance Apple's Transparency Consent and Control (TCC) security and privacy mechanism…☆81Nov 21, 2023Updated 2 years ago
- Spins up a docker container with several useful tools for offensive security in macOS/cloud environments. Also installs the needed depend…☆18Nov 3, 2021Updated 4 years ago
- A ruleset to find potentially malicious code in macOS malware samples☆41Aug 29, 2023Updated 2 years ago
- Utility for sniffing SSL/TLS encrypted traffic on a darwin-based platforms.☆27Jan 29, 2024Updated 2 years ago