Exploring FSKit - Writing Filesystems for Fun, Profit, and Defense, Detections and Evasion
Objective-See Foundation via YouTube
2,000+ Free Courses with Certificates: Coding, AI, SQL, and More
Learn Excel & Financial Modeling the Way Finance Teams Actually Use Them
Overview
Google, IBM & Meta Certificates — All 10,000+ Courses at 40% Off
One annual plan covers every course and certificate on Coursera. 40% off for a limited time.
Get Full Access
Explore Apple's FSKit APIs for writing filesystems in userspace through this 19-minute conference talk that examines both the capabilities and security implications of this new technology. Begin with a brief history of userspace filesystems and understand why they belong outside the kernel, then dive deep into practical implementation by building a pseudo filesystem using FSKit. Learn how to leverage these filesystems for security applications, including creating honeypots and tripwires to detect infostealers and malware targeting macOS systems. Discover the dual nature of this technology by examining whether malware can exploit FSKit-based filesystems to evade detection mechanisms. Gain insights from a security-focused software engineer with extensive experience in macOS endpoint agents, and access comprehensive slides to reinforce the technical concepts covered in this Objective-See Foundation presentation.
Syllabus
#OBTS v8 Exploring FSKit: Writing Filesystems for Fun, profit, & Def, Detections & Evasion? S. Shah
Taught by
Objective-See Foundation