willyu-elastic / SimpleEndpointLinks
Sample code for macOS Extensions Part 3
☆24Updated 5 years ago
Alternatives and similar repositories for SimpleEndpoint
Users that are interested in SimpleEndpoint are comparing it to the libraries listed below
Sorting:
- A file system filter for Mac OS X☆101Updated 8 years ago
- MacOS X process monitor using EndpointSecurity extension.☆37Updated last month
- Mac OS X file system filter to redirect file operations☆42Updated 7 years ago
- A Mac OS X kernel mode filter driver ( a kernel extension ) for devices, file systems and network☆168Updated 7 years ago
- A macOS IOKit objects hooker☆88Updated 8 years ago
- A TrustedBSD module to control execution of binaries with suid bit set☆38Updated 11 years ago
- A MacOS VFS isolation layer to redirect file I/O operations.☆30Updated 7 years ago
- macOS notes☆118Updated 6 years ago
- A macOS behavior audit / event monitoring system with scope of file, process and network events (based on Endpoint Security Framework).☆48Updated 3 months ago
- This is a complete Xcode project of the Endpoint Security Demo gist: https://gist.github.com/Omar-Ikram/8e6721d8e83a3da69b31d4c2612a68ba☆20Updated 9 months ago
- ☆68Updated 2 years ago
- An Open-Source Pre and Post Callback-Based Framework for macOS Kernel Monitoring.☆390Updated last month
- Utility to manipulate codesigned application in Mac OS X. Demonstrate the use of csops system call.☆78Updated last year
- Tool for reverse-engineering Apple's sandbox☆60Updated 8 years ago
- A MacOS network kernel extension filter for IPv4/IPv6 sockets.☆75Updated 8 years ago
- macOS XProtect definition files☆40Updated 3 years ago
- A library to execute code in the context of other processes on iOS 11.☆82Updated 7 years ago
- macOS Private KPI Symbol Resolver☆49Updated 8 years ago
- An app to protect against process injection and suspicious file links on macOS☆230Updated 4 years ago
- Mac OS X rootkit - for learning purposes☆129Updated 11 years ago
- Learn MacOS kernel extensions☆46Updated 7 years ago
- Updated sample code for OS X and iOS Kernel Programming book☆38Updated 6 years ago
- A tool for debugging macOS virtual machines☆112Updated 5 years ago
- File Monitor Library (based on Apple's new Endpoint Security Framework)☆361Updated 3 years ago
- Mac OS X syscall hook kext☆22Updated 9 years ago
- ☆123Updated 2 years ago
- Dump Kext information from Macos. Support batch analysis. The disassembly framework used is Capstone☆43Updated 8 years ago
- Mach-O import table patching for function redirection. This is a method for function hooking on Mac OS X. It patches the import table of …☆113Updated 11 years ago
- The current repository contains all the scripts needed to complement kernel-mode mac-a-mal malicious activity hooking on macOS to Cuckoo …☆50Updated 7 years ago
- Open-source reimplementation of Apple XPC library.☆113Updated 10 years ago