A technical guide focused on programmatic Mac malware detection. The content covers examining various data sources like process information, network activity, and persistence mechanisms to identify malicious behavior. It explains how to parse executable files, validate code signing, and monitor system events using native macOS frameworks and APIs, including the NetworkExtension and Endpoint Security frameworks. The sources discuss case studies of real-world malware and tools like KnockKnock and BlockBlock as practical examples of detection methods.
You can listen and download our episodes for free on more than 10 different platforms:
https://linktr.ee/cyber_security_summary
Get the Book now from Amazon:
https://www.amazon.com/Art-Mac-Malware-Detecting-Malicious/dp/1718503784?&linkCode=ll1&tag=cvthunderx-20&linkId=2bda107e6375bc0ac86fa4610caa342c&language=en_US&ref_=as_li_ss_tl
Published on 5 days, 3 hours ago
If you like Podbriefly.com, please consider donating to support the ongoing development.
Donate