lyq1996 / X-Monitor
X-Monitor is an open-source, extensible event monitoring tool for macOS that provides security professionals with the ability to perform process behavior auditing.
☆19Updated last year
Alternatives and similar repositories for X-Monitor
Users that are interested in X-Monitor are comparing it to the libraries listed below
Sorting:
- A macOS behavior audit / event monitoring system with scope of file, process and network events (based on Endpoint Security Framework).☆45Updated 4 months ago
- MacOS X process monitor using EndpointSecurity extension.☆35Updated 4 years ago
- Sample code for macOS Extensions Part 3☆24Updated 5 years ago
- slightly modified version of jonathan levins lsdtrip bin available at http://newosxbook.com/tools/lsdtrip.html☆19Updated last year
- A MacOS VFS isolation layer to redirect file I/O operations.☆30Updated 7 years ago
- Mach-O file parser.☆54Updated 3 weeks ago
- A simple demonstration of the macOS Network Extension☆15Updated 4 years ago
- Mac OS X file system filter to redirect file operations☆42Updated 7 years ago
- Updated sample code for OS X and iOS Kernel Programming book☆37Updated 6 years ago
- A file system filter for Mac OS X☆101Updated 8 years ago
- Grant private entitlements to OSX apps☆107Updated 4 years ago
- C++ library for com.apple.network.statistics kernel events on MacOS/OS X/Darwin☆21Updated 4 years ago
- Implemented reverse-engineered signature algorithm to successfully register with Apple's caching server.☆18Updated last year
- An NSXPCConnection wrapper that does signature validation☆26Updated last year
- Guessed headers of non-public Apple SDK☆40Updated 4 months ago
- XPC and Friends (libxpc, launchd and soon xpc.framework)☆63Updated 7 months ago
- A runtime ObjC class-dump☆72Updated 4 months ago
- mirror of apple's corecrypto implementation☆35Updated 8 years ago
- Kdebug events and ktraces parser☆36Updated 2 weeks ago
- ☆97Updated this week
- A macOS command-line tool to dump the contents of dyld shared cache files.☆37Updated 3 weeks ago
- This is a complete Xcode project of the Endpoint Security Demo gist: https://gist.github.com/Omar-Ikram/8e6721d8e83a3da69b31d4c2612a68ba☆19Updated 4 months ago
- Learn MacOS kernel extensions☆46Updated 7 years ago
- XNU kernel symbol resolver(kernel extension)☆12Updated 6 years ago
- Transform any ARM macho executable to a dynamic library☆42Updated last month
- Misc llvm patches☆23Updated 3 years ago
- A tiny macOS 10.12 Sierra kernel extension for disabling CS_REQUIRE_LV system-wide☆73Updated 7 years ago
- Easily build, install and deploy the XNU kernel☆63Updated 9 years ago
- jtool2 support Mac arm64 and x86_64☆33Updated 2 years ago
- macOS notes☆118Updated 5 years ago