MacOSThreatTrack - Bash Tool Used For Proactive Detection Of Malicious Activity On macOS Systems


The tool is being tested in the beta phase, and it only gathers MacOS system information at this time.

The code is poorly organized and requires significant improvements.

Description

Bash tool used for proactive detection of malicious activity on macOS systems.

I was inspired by Venator-Swift and decided to create a bash version of the tool.

OneLiner command

curl https://raw.githubusercontent.com/ab2pentest/MacOSThreatTrack/main/MacOSThreatTrack.sh | bash

Gathered information

[+] System info[+] Users list[+] Environment variables[+] Process list[+] Active network connections[+] SIP status[+] GateKeeper status[+] Zsh history[+] Bash history[+] Shell startup scripts[+] PF rules[+] Periodic scripts[+] CronJobs list[+] LaunchDaemons data[+] Kernel extensions[+] Installed applications[+] Installation history[+] Chrome extensions

Todo

  1. Saving output as JSON instead of printing out the result.



Source: www.kitploit.com
MacOSThreatTrack - Bash Tool Used For Proactive Detection Of Malicious Activity On macOS Systems MacOSThreatTrack - Bash Tool Used For Proactive Detection Of Malicious Activity On macOS Systems Reviewed by Zion3R on 4:40 AM Rating: 5