Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Introducing the Next Generation of Mac Monitor

Objective-See Foundation via YouTube

Overview

Coursera Spring Sale
40% Off Coursera Plus Annual!
Grab it
Explore the evolution of Mac Monitor, an open-source macOS security monitoring tool built on Apple's Endpoint Security APIs. Learn how this "ProcMon for macOS" has advanced since its 2023 release, featuring major telemetry updates standardized to Apple's ESLogger, new event types, enhanced integrations, and improved correlation capabilities. Discover how to operationalize the Endpoint Security event stream for threat detection and analysis, while examining new features that enable analysts to trace specific system activity with greater precision. Gain insights into dynamic event subscriptions, filtering mechanisms, path muting, and enrichment techniques that help security professionals prototype detection ideas and analyze system behavior. Understand the technical implementation of this SwiftUI application that democratizes access to Apple's standardized security events, covering everything from atomic system calls like fork and exec to composite events such as tcc_modify.

Syllabus

#OBTS v8.0: “Introducing the Next Generation of Mac Monitor” - Brandon Dalton

Taught by

Objective-See Foundation

Reviews

Start your review of Introducing the Next Generation of Mac Monitor

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.