Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Mirror Mirror - Restoring Reflective Code Loading on macOS

Objective-See Foundation via YouTube

Overview

Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
A technical conference talk explores the evolution and restoration of reflective code loading capabilities on macOS systems. Dive into traditional methods of reflective code loading, examining real-world malware examples that attempted to leverage these techniques. Learn how Apple's modifications to loader APIs impacted this functionality by enforcing file-based loading, and discover a straightforward approach that utilizes Apple's own loader to restore reflective loading capabilities through macOS 15. Gain insights into the security implications of these techniques and explore defensive strategies for detection and mitigation. Presented by Patrick Wardle, founder of the Objective-See Foundation and renowned macOS security expert with experience at NASA and NSA, this 29-minute presentation provides valuable knowledge for security professionals and developers interested in macOS system internals and security architecture.

Syllabus

#OBTS v7.0: "Mirror Mirror: Restoring Reflective Code Loading on macOS" - Patrick Wardle

Taught by

Objective-See Foundation

Reviews

Start your review of Mirror Mirror - Restoring Reflective Code Loading on macOS

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.