mellow-hype / santa-linux
A proof-of-concept Linux clone of Santa, Google's binary authorization system for macOS
☆30Updated 2 years ago
Alternatives and similar repositories for santa-linux:
Users that are interested in santa-linux are comparing it to the libraries listed below
- Checks for tpm vulnerabilities☆37Updated 2 years ago
- ☆26Updated last year
- macOS Endpoint Security Message Analysis Tool☆47Updated 3 years ago
- Tools to measure an app's App Sandbox usage☆24Updated 4 years ago
- egrets monitors egress☆45Updated 5 years ago
- LKRG bypass methods☆72Updated 5 years ago
- ☆31Updated 10 months ago
- Golang Tool to interact with Launchd and other services with XPC☆29Updated 4 years ago
- Golang command line tool for the macOS Endpoint Security Framework☆29Updated 5 years ago
- 🥷 Soothing pastel theme for Binary Ninja☆24Updated 6 months ago
- Conferences, tools, papers, etc.☆43Updated 2 months ago
- Armory Drive - USB encrypted drive with mobile unlock over BLE☆54Updated 2 months ago
- Fuzz Network Traffic☆18Updated 3 months ago
- Helper scripts to automate the extraction of YARA rules from XProtectRemediators☆20Updated last year
- A minimal malware analysis sandbox for macOS☆29Updated 2 years ago
- macOS codesigning translocation vulnerability.☆42Updated 3 years ago
- DeepToad is a library and a tool to clusterize similar files using fuzzy hashing☆20Updated 5 years ago
- Use "Full Disk Access" permissions to read the contents of TCC.db and display it in human-readable format☆39Updated 3 years ago
- An eBPF detection program for CVE-2022-0847☆28Updated 2 years ago
- Miscellaneous one-off scripts, exploits, tools, sample code, ...☆10Updated 6 years ago
- Discover which process execute a hunted binary inside macOS☆24Updated 3 years ago
- Scripts to secure and harden Mac OS X☆32Updated 3 years ago
- macOS XProtect definition files☆40Updated 3 years ago
- insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.☆50Updated 3 years ago
- ESF modular ingestion tool for development and research.☆35Updated 3 years ago
- The Art of Mac Malware☆42Updated last month
- macOS Sandbox Profile Language (SBPL) Interpreter☆53Updated 4 years ago
- crashmon - A LLDB Based replacement for CrashWrangler☆46Updated last year
- Workshop for finding software vulnerabilities using open source tools, which includes a Goat-like Python and C application☆26Updated 7 months ago
- ☆11Updated 2 months ago