Hardening Your Macintosh
os x security, auditing, hardening, pen-testing, privacy & more...
updated 11.15.04


index / general /

- programming - privacy - secure deletion - anti-forensics - os x servers & labs - other cool os x sites -


programming:

Advanced Programming in the Mac OS X Environment - Amit Singh's great resource which includes Re-routing function calls, Re-routing system calls, Booting OSX and more...

Mac PPC Assembly - assembly, shellcode, gdb notes

How to Write Secure Code


privacy:

Mac GNU Privacy Guard -
http://macgpg.sourceforge.net

Mixminion - A Type III Anonymous Remailer client and server
www.mixminion.net - server stats

privoxy - A web proxy with advanced filtering capabilities for protecting privacy, modifying web page content, managing cookies, controlling access, and removing ads, banners, pop-ups and other obnoxious Internet junk. can be used in conjunction with tor
www.privoxy.org

tor - an anonymizing overlay network for TCP. Tor is a connection-based low-latency anonymous communication system which addresses many flaws in the original onion routing design.
freehaven.net/tor/ - server stats - The Onion Router / torify HowTo wiki

jap - java anonymous proxy -
http://anon.inf.tu-dresden.de/index_en.html - current server status


secure deletion:

Securely delete caches & cookies with srm
srm_delete_caches_03.tgz

srm - os x 10.3.x ships with a custom built version of srm.
fwipe -
bcwipe -


anti-forensics:

The Art of Defiling - Defeating Forensic Analysis on Unix File Systems by the grugq
13-grugq.ppt

Anonymizing UNIX Systems - Some of which can be adapted to OSX


os x servers & labs:

afp548.org - OSX Server info
www.afp548.com

Mac OSX Labs - OSX Labs Servers & Client info
www.macosxlabs.org

Bombitch Software - OSX Lab Managment
www.bombich.com


other cool os x sites:

daringfireball.net

darwinports.opendarwin.org

fink.sourceforge.net

macosx.forked.net

www.macdevcenter.com/