View Code? Open in Web Editor
NEW
Living Off the Orchard: macOS Binaries (LOOBins) is designed to provide detailed information on various built-in "living off the land" macOS binaries and how they can be used by threat actors for malicious purposes.
Home Page: https://loobins.io
License: GNU General Public License v3.0
Python 90.67%
Jinja 9.33%
loobins's Issues
LOOBin description
No response
LOOBin description
Similar to GTFOBins of bash
LOOBin description
No response
LOOBin description
Used in many macOS things, including past sandbox escapes.
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
sudo spctl --master-disable
LOOBin description
No response
LOOBin description
/usr/bin/SetFile is a tool to set the file attributes on files in an HFS+ directory.
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
Can probably just copy-paste from Windows \ Linux LOLBINs FWIW
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
Path(pyloobins.__file__).parents[1]/"LOOBins"
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
No response
LOOBin description
Can be used for HTTP comms purposes
Export LOOBin binary as STIX Tool
Export Functions as STIX Attack Patterns
Export Detections as STIX Course of Action
Create relationships between the above objects
Bundle the objects list above as a STIX package