
Jaron Bradley: Securing Enterprise macOS
Blueprint: Build the Best in Cyber Defense
00:00
How to Catch Mac Persistence on Mac OS X
Apple noticed that attackers were doing this, right? This is actually one of the one of the reasons that a system integrity protection exists on mac. If you try to go to the root of your hard drive and create a file, even as root, you can't do it. That's because of the security implementation in place. O apple's basically taken the corps of the operating system and they've protected it by sip so. And then they took all those launch agents and damons, launch agents anddamons um called comdot apple, and they moved it to those protected directories. Lot of attackers don't even realize this, so that they continue to call theire like damons and
Transcript
Play full episode