Sabitlenmiş Tweet

My latest blog post on how in memory JXA exec, dylib exec, keylogging, and other techniques look through the lens of Apple’s ESF 🔎: cedowens.medium.com/taking-esf-for…
English
Cedric Owens
1.1K posts

@cedowens
Proud Husband to @sgowens0716 and Father | Offensive Security Engineer | https://t.co/CQv4PZcuvG



















ATT&CK is looking for our next CTI lead! You'd be in charge of our Groups/Campaigns/Software, ATT&CK's CTI strategy, which reports we add, the team who adds/updates CTI in ATT&CK, and final review of procedures. You can check out the posting and apply at: mitre.wd5.myworkdayjobs.com/MITRE/job/McLe…


Found the coolest macOS persistence ever: 🍎 Not visible and always runs 🍎 No root is required 🍎 Not sandboxed 🍎 Not detected by BTM 🍎 Not detected by BlockBlock and Knockknock 😱