23.7. Summary

This chapter discussed the importance of knowing when files on your Mac may have changed without your knowledge because this could mean that malware is at work or that a network-based attack of some sort has taken place. I described the process of monitoring file integrity using an open-source tool called Tripwire in some detail, briefly discussed Radmind and Samhain — two other open-source tools — and ended with a description of the somewhat less sophisticated but much friendlier utilities Baseline and Sonar.

Get Mac® Security Bible now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.