Whether you're new to threat hunting or an experienced threat hunter, this three-day course brings an in-depth,
hands-on experience to those looking to deep dive into using macOS internals to their advantage for threat hunting.
Learn how to use the less commonly used artifacts to hunt down malicious activity in your environment.
This course uses simulated attack data collected with the Apple Endpoint Security API and teaches attendees
how to connect the dots to determine what took place on the system.
course_topics
What You'll Learn
Topics are discussed in presentation form and then applied via hands-on labs.
Exploring the process tree and understanding process creation
Understanding the complications of XPC
Tracing the steps of real malware samples and determining the scope of the attack
Hunting using the lesser explored pid values
Hunting using macOS and Unix specific technologies
...and much more
gallery --from-classroom
From Past Sessions
Photos from Objective by the Sea training sessions
event_details
Location & Dates
| Conference | Objective by the Sea Conference 9.0 |
| Dates | November–15-17, 2026 |
| Hotel | Hyatt Regency Maui Resort & Spa |
| Training Location | Maui |
$1,900 USD
Conference ticket must be purchased separately.
requirements --check
Prerequisites
- A Mac. No virtual machine required.
- A laptop capable of searching keywords within large amounts of text data (learn how to use grep!)
- General understanding of how computers work and what a process is
- General understanding of one of: threat hunting, forensics, incident response, or computer science
cancellation_policy
Refund Policy
Full refund
(minus transaction fees) if cancelled before 9/1/25
Half refund
after 9/1/25 (minus transaction fees)
Note: Payments are handled through Stripe, and reimbursements may not include the transaction fees that Stripe may charge.
Sign Up for Training
Further questions? jaron@themittenmac.com