lyq1996 / X-Monitor
X-Monitor is an open-source, extensible event monitoring tool for macOS that provides security professionals with the ability to perform process behavior auditing.
☆18Updated 10 months ago
Alternatives and similar repositories for X-Monitor:
Users that are interested in X-Monitor are comparing it to the libraries listed below
- A macOS behavior audit / event monitoring system with scope of file, process and network events (based on Endpoint Security Framework).☆44Updated 3 months ago
- MacOS X process monitor using EndpointSecurity extension.☆35Updated 3 years ago
- Sample code for macOS Extensions Part 3☆24Updated 5 years ago
- slightly modified version of jonathan levins lsdtrip bin available at http://newosxbook.com/tools/lsdtrip.html☆18Updated last year
- A runtime ObjC class-dump☆70Updated 3 months ago
- Guessed headers of non-public Apple SDK☆25Updated 3 months ago
- Kdebug events and ktraces parser☆34Updated 5 months ago
- XNU kernel symbol resolver(kernel extension)☆12Updated 6 years ago
- A command line arguments parser of Objective-C☆14Updated 7 months ago
- Transform any ARM macho executable to a dynamic library☆41Updated last week
- Binary Ninja plugin & workflow to help analyze Objective-C code☆50Updated 4 months ago
- Misc llvm patches☆23Updated 3 years ago
- A MacOS VFS isolation layer to redirect file I/O operations.☆30Updated 7 years ago
- Updated sample code for OS X and iOS Kernel Programming book☆37Updated 6 years ago
- Experiment to attempt to build Apple's dyld tools.☆63Updated 4 years ago
- Packed tool for extracting frameworks and libraries from iOS dyld shared cache.☆29Updated 2 years ago
- A file system filter for Mac OS X☆101Updated 7 years ago
- Mach-O file parser.☆51Updated 6 months ago
- arm64 IOKit class dumper☆18Updated last month
- C++ library for com.apple.network.statistics kernel events on MacOS/OS X/Darwin☆21Updated 4 years ago
- This project injects into Hopper Disassembler and exposes core functionality via a local server. It can be used to create automations/too…☆16Updated 3 years ago
- arm64 and arm64e dylib injector☆31Updated last year
- Apple SEP reverse☆51Updated 4 years ago
- Yet another xpc sniffer☆125Updated last month
- A Python library for the ipsw daemon API☆23Updated last year
- Tool for reverse-engineering Apple's sandbox☆56Updated 7 years ago
- mirror of apple's corecrypto implementation☆35Updated 8 years ago
- A modern Objective-C class dump based on LIEF and LLVM.☆157Updated 8 months ago
- A simple demonstration of the macOS Network Extension☆15Updated 3 years ago
- A macOS IOKit objects hooker☆87Updated 7 years ago