Tripwires in the Dark: Developing Behavior Detections for macOS
Objective-See Foundation via YouTube
AI, Data Science & Business Certificates from Google, IBM & Microsoft
MIT Sloan AI Adoption: Build a Playbook That Drives Real Business ROI
Overview
Google, IBM & Meta Certificates — All 10,000+ Courses at 40% Off
One annual plan covers every course and certificate on Coursera. 40% off for a limited time.
Get Full Access
Explore a 45-minute conference talk that examines the evolution of macOS security, focusing on behavior-based detection methods as a critical advancement beyond traditional signature and model-based approaches. Learn how quality data collection, analysis tools, and deep understanding of macOS internals combine with threat actors' Tactics, Techniques, and Procedures (TTPs) to create more effective security measures. Through real-world case studies and an examination of Elastic's advanced behavior detections, discover practical implementations for identifying hidden threats in macOS systems. Gain valuable insights from Senior Security Research Engineer Colson Wilhoit's expertise in developing resilient behavioral-based detections for both endpoint and SIEM systems, while understanding the limitations of relying solely on model and static signature-based detection methods.
Syllabus
#OBTS v7.0: "Tripwires in the Dark: Developing Behavior Detections for macOS" - Colson Wilhoit
Taught by
Objective-See Foundation