
Modern macOS Red Teaming Tactics | SO-CON 2025
Source: YouTube · SpecterOps · published May 6, 2025 · 49:39
Lance Kaine, a Service Architect at Spectre Ops, outlines strategies for automating red team tradecraft and disseminating Mac OS security research to enhance organizational defensive and offensive capabilities 0:03.
Key Takeaways:
• Kaine bridges red team innovation and consulting services by automating tradecraft and documenting new payload techniques for broader organizational use 0:11.
• He emphasizes making complex Mac OS research accessible to the team, ensuring discoveries are shared and integrated into consulting workflows 0:25.
• His work supports consulting services through intelligent automation and knowledge sharing, strengthening the team's overall operational effectiveness 0:31.
• Kaine highlights a strong specialization in Mac OS security, noting its prevalence in developer-centric environments and the relative maturity gap compared to Windows defenses 0:38.
This summary underscores how service architects scale red team innovations by integrating automation and knowledge management to maintain operational excellence in macOS security.
Sources:
Generate CPE Credits
Generate a professional CPE document from this video's transcript.
Estimated credit: 1 CPE hours
Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.
Topic: Penetration Testing. Commonly maps to: Security Assessment and Testing, Security Operations. Exact CISSP domains are assigned during generation.
Free account. One generation at a time, with a daily limit.
CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.
Transcript Preview
First 800 characters of the transcript
[Music] My name is Lance Kaine. I also go by robot robot operator whenever uh you're looking at my GitHub. I'm a service architect at Spectre Ops. So, I tend to focus on supporting our consulting services whenever I'm not leading red team engagements or penetration tests to be able to automate some of our tradecraftraft, identify new payload techniques, or be able to incorporate things to make it a little bit more accessible with all the intelligent people we have working together. when they come up with cool stuff, the service architects get to like figure out how we can spread that knowledge and document it and make sure things make it across to all of our consulting services. Uh big fan of Mac OS research and red teaming. We've had a lot of success over the past few months with many of …