slavaim / MacOSX-VFS-Isolation-Filter
A MacOS VFS isolation layer to redirect file I/O operations.
☆30Updated 7 years ago
Alternatives and similar repositories for MacOSX-VFS-Isolation-Filter:
Users that are interested in MacOSX-VFS-Isolation-Filter are comparing it to the libraries listed below
- A B-Tree sparse file implementation for kernel mode IOKit modules/extensions.☆16Updated 8 years ago
- Mac OS X file system filter to redirect file operations☆42Updated 7 years ago
- A file system filter for Mac OS X☆101Updated 8 years ago
- A macOS IOKit objects hooker☆88Updated 8 years ago
- MacOS X process monitor using EndpointSecurity extension.☆35Updated 4 years ago
- A MacOS network kernel extension filter for IPv4/IPv6 sockets.☆75Updated 7 years ago
- Sample code for macOS Extensions Part 3☆24Updated 5 years ago
- A TrustedBSD module to control execution of binaries with suid bit set☆37Updated 10 years ago
- A tool for Mac OS X proxy kext generation to export kernel symbols☆26Updated 7 years ago
- macOS Private KPI Symbol Resolver☆49Updated 8 years ago
- Learn MacOS kernel extensions☆46Updated 7 years ago
- Tool for reverse-engineering Apple's sandbox☆56Updated 8 years ago
- X-Monitor is an open-source, extensible event monitoring tool for macOS that provides security professionals with the ability to perform …☆19Updated last year
- A kext to facilitate calling PE_enter_debugger on machines that don't respect Cmd-Ctrl-Opt-Shift-Esc☆15Updated 6 years ago
- enable kmem without rebooting☆23Updated 13 years ago
- Apple's gdb fork with some fixes and enhancements☆56Updated 11 years ago
- A Mac OS X kernel mode filter driver ( a kernel extension ) for devices, file systems and network☆169Updated 7 years ago
- Updated sample code for OS X and iOS Kernel Programming book☆37Updated 6 years ago
- A macOS behavior audit / event monitoring system with scope of file, process and network events (based on Endpoint Security Framework).☆45Updated 4 months ago
- Parasite.kext☆35Updated 9 years ago
- Dump Kext information from Macos. Support batch analysis. The disassembly framework used is Capstone☆43Updated 7 years ago
- fG!'s crackme #1 source code☆35Updated 11 years ago
- Non kernel components of DTrace on Mac OS☆25Updated 8 years ago
- Implementation of kexstat via /dev/kmem with kernel ASLR support☆36Updated 9 years ago
- Inject a DyLib to an existing Mach-O file☆23Updated 9 years ago
- ☆66Updated 2 years ago
- Utility to manipulate codesigned application in Mac OS X. Demonstrate the use of csops system call.☆78Updated last year
- Various WinDbg extensions and scripts☆31Updated 6 years ago
- FlockFlock: File Access Policy Enforcement for macOS☆26Updated 8 years ago
- The grey fox☆25Updated 8 years ago