Mastering macOS Threat Detection and Incident Response: A Hands-On Blue Team Training
OVERVIEW
NOTE: This training is a 2-day (8 hours/day) course from September 4 to 5.
Are you ready to tackle the rising wave of macOS security threats?
This rare 2-day training equips blue teams with practical skills to monitor, detect, and respond to macOS attacks. As one of the few specialized courses in macOS security, it’s an indispensable opportunity to strengthen your defenses
With macOS adoption skyrocketing in enterprises, attackers are innovating to target this platform, shattering the myth of macOS immunity.
Main Takeaways
-(Fundamentals) Gain the latest happenings and a comprehensive understanding of macOS security fundamentals, including file systems, timestamps, security features (XProtect, Gatekeeper, TCC etc.), and how attackers bypass them.
-(Monitoring & Threat Detection) Learn to set up an infrastructure for attack simulation and analyze real-time macOS endpoint telemetry to identify suspicious activity
-(Incident Response) Develop essential incident response and forensic artifact analysis skills, and utilize investigation tools to minimize damage from cyberattacks.
Attendees will leave with actionable skills, lab instructions, and evidence files to tackle real-world macOS security challenges confidently.
PREREQUISITES
-Familiarity with macOS
-Cybersecurity and incident response basics
-Curiosity, Willingness, and of course, the Lab requirements too
Lab Requirements
-Laptop: Macbook with M* chip
-OS: macOS 13 or above with Admin rights
-RAM: min. 16 GB
-Storage: 100 GB