xorrior / macOSToolsLinks
macOS Offensive Tools
☆272Updated 2 years ago
Alternatives and similar repositories for macOSTools
Users that are interested in macOSTools are comparing it to the libraries listed below
Sorting:
- Proof of concept MacOS post exploitation tool written in Swift. Designed as a POC for blue teams to build macOS detections. Author: Cedri…☆123Updated 4 years ago
- Collection of macOS persistence methods and miscellaneous tools in JXA☆284Updated 2 years ago
- macOS persistence tool☆226Updated 3 years ago
- A macOS enumeration tool inspired by harmjoy's Windows-based Seatbelt enumeration tool. Author: Cedric Owens☆339Updated 3 years ago
- macOS Initial Access Payload Generator☆318Updated last year
- Objective-C library and console to interact with Heimdal APIs for macOS Kerberos☆153Updated 2 years ago
- Tracking of offensive macOS tooling, blogs, and related helpful information☆189Updated last year
- Unit tests for blue teams to aid with building detections for some common macOS post exploitation methods.☆110Updated 3 years ago
- ☆99Updated 4 years ago
- Zombie Ant Farm: Primitives and Offensive Tooling for Linux EDR evasion.☆228Updated 6 years ago
- A repository of previous info-sec presentations I've presented.☆162Updated last year
- Fileless lateral movement tool that relies on ChangeServiceConfigA to run command☆113Updated 6 years ago
- Swift 5 macOS agent☆112Updated last year
- A sample of proof of concept scripts that run Calc.exe with full source code.☆97Updated last year
- Encrypted exploit delivery for the masses☆269Updated 6 years ago
- Apfell Golang macOS/Linux/Windows implant☆90Updated 4 years ago
- Scripts (python3 and Swift) for macOS to recursively check /Applications and also check /usr/local/bin, /usr/bin, and /usr/sbin for binar…☆97Updated 3 years ago
- Swift code to programmatically perform dylib injection☆52Updated 3 years ago
- BlueHatIL 2020 - Staying # and Bringing Covert Injection Tradecraft to .NET☆148Updated 5 years ago
- Uses Apple's MDM protocol to backdoor a device with a malicious profile.☆55Updated 4 years ago
- A proof of concept for a clickjacking attack on macOS.☆95Updated last year
- Presentation material presented by Outflank team members at public events.☆192Updated last month
- A CLI tool for leveraging IDP signing keys to impersonate users and groups☆19Updated 4 years ago
- Execute MachO binaries in memory using CGo☆79Updated 4 years ago
- Exploits and advisories☆203Updated 2 months ago
- Silencing Sysmon via driver unload☆234Updated 3 years ago
- Red Team C2 Infrastructure built in AWS using Ansible!☆231Updated 5 years ago
- lateral movement techniques that can be used during red team exercises☆273Updated 5 years ago
- ☆117Updated 7 months ago
- A collection of scripts for dealing with Cobalt Strike beacons in Python☆168Updated 4 years ago