Modern macOS Red Teaming Tactics | SO-CON 2025

Modern macOS Red Teaming Tactics | SO-CON 2025

Source: YouTube · SpecterOps · published May 6, 2025 · 49:39

Penetration Testing
No ratings yet Log in to rate
Transcript Available
Description

Lance Kaine, a Service Architect at Spectre Ops, outlines strategies for automating red team tradecraft and disseminating Mac OS security research to enhance organizational defensive and offensive capabilities 0:03.

Key Takeaways:
• Kaine bridges red team innovation and consulting services by automating tradecraft and documenting new payload techniques for broader organizational use 0:11.
• He emphasizes making complex Mac OS research accessible to the team, ensuring discoveries are shared and integrated into consulting workflows 0:25.
• His work supports consulting services through intelligent automation and knowledge sharing, strengthening the team's overall operational effectiveness 0:31.
• Kaine highlights a strong specialization in Mac OS security, noting its prevalence in developer-centric environments and the relative maturity gap compared to Windows defenses 0:38.

This summary underscores how service architects scale red team innovations by integrating automation and knowledge management to maintain operational excellence in macOS security.

Sources:

  • 0:03 Introduction of Lance Kaine and his professional identity
  • 0:11 Description of his role as a service architect at Spectre Ops
  • 0:25 Focus on automating tradecraft and documenting techniques
  • 0:31 Support for consulting services through automation
  • 0:38 Interest in Mac OS research and red teaming

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 1 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Penetration Testing. Commonly maps to: Security Assessment and Testing, Security Operations. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

[Music] My name is Lance Kaine. I also go by robot robot operator whenever uh you're looking at my GitHub. I'm a service architect at Spectre Ops. So, I tend to focus on supporting our consulting services whenever I'm not leading red team engagements or penetration tests to be able to automate some of our tradecraftraft, identify new payload techniques, or be able to incorporate things to make it a little bit more accessible with all the intelligent people we have working together. when they come up with cool stuff, the service architects get to like figure out how we can spread that knowledge and document it and make sure things make it across to all of our consulting services. Uh big fan of Mac OS research and red teaming. We've had a lot of success over the past few months with many of …