Mac-A-Mal: An Automated Platform for Mac Malware Hunting

As Mac systems grow in popularity, so does macOS malware — whilst macOS malware analysis is still lagging behind — particularly when we deal with malicious behaviors in the user space. To amend this shortcoming, we have come up with macOS analyzer for malware – Mac-A-Mal: a system for behavioral monitoring of components at kernel level which allows analysts to automatically investigate malware on macOS, broadly extending what is available today with Cuckoo sandbox.

By Pham Duy Phuc & Fabio Massacci

Full Abstract & Presentation Materials:


