Knockknock Logo

Knockknock

0
Free
Visit Website

KnockKnock is a free, open-source tool that uncovers persistently installed software on macOS, helping to generically reveal malware. It scans known locations where persistent software or malware may be installed, and provides detailed information about each item, including its hash, size, plist, and signed status. KnockKnock also integrates with VirusTotal to retrieve information about the files and allows users to submit unknown files for analysis. The tool provides a user-friendly interface to display the results, with options to filter out signed Apple and whitelisted items, and to save the findings as a JSON file. KnockKnock can also be run via the command line, allowing for programmatic deployment and execution. Overall, KnockKnock is a valuable tool for macOS users to detect and analyze persistently installed software and potential malware on their systems.

FEATURES

ALTERNATIVES

OpenEDR is an open-source platform enhancing cybersecurity through real-time detection and analysis of cyber threats.

Advanced malware scanning and removal tool that detects and removes various types of malware and offers additional protection with HitmanPro.Alert.

A free endpoint security tool for host investigative capabilities to find signs of malicious activity through memory and file analysis.

Heimdal Enterprise provides a unified cybersecurity platform with advanced network and endpoint security solutions, including threat hunting and privileged access management.

YARA-Endpoint is a client-server architecture tool that can be used for endpoint protection and incident response.

A collection of utilities for working with USB devices on Linux

Advanced Endpoint Protection is a complete endpoint protection platform that provides advanced threat protection against ransomware, data breaches, and malware.

A tool for monitoring and managing device compliance and security across multiple platforms