Course Summary
Advanced macOS Control Bypasses (EXP-312) is OffSec’s first foray into macOS security. It’s an offensive logical exploit development course on macOS, focusing on local privilege escalation and bypassing the operating system’s defenses. Earn your OffSec macOS Researcher (OSMR) certification.
• Obtain a strong understanding of macOS internals
• Learn the basics of Mach messaging
• Learn how to bypass Transparency, Content and Control (TCC) protections
• Learn how to escape the Sandbox
• Perform symbolic link attacks
• Leverage process injection techniques
• Exploit XPC for privilege escalation
• Perform hooking based attacks
• Write Shellcode for macOS
• Bypass kernel code-signing protection
This course covers the following topics:
• Introduction to macOS internals
• Debugging, Tracing Hopper
• Shellcoding in macOS
• Dylib Injection
• Mach and Mach injection
• Hooking
• XPC exploitation
• Sandbox escape
• Attacking privacy (TCC)
• Symlink attacks
• Kernel code execution
• macOS Pentesting
Other Popular Courses
Next Generation Mindfulness
- Duration: 1 Days
- Language: English
- Level: Foundation
- Exam: NGM
Nutanix Multicloud Infrastructure Design (NMC...
- Duration: 1 Days
- Language: English
- Level: Advanced
- Exam: Nutanix Certifi
CertNexus: CyberSec First Responder (CFR)
- Duration: 5 Days
- Language: English
- Level: Advanced
- Exam: CFR-410