{"repo":"drduh/macOS-Security-and-Privacy-Guide","free":true,"listed":false,"github":"https://github.com/drduh/macOS-Security-and-Privacy-Guide","clone":"git clone https://github.com/drduh/macOS-Security-and-Privacy-Guide.git","description":"Community guide to securing and improving privacy on macOS.","language":null,"stars":22487,"topics":["apple","macos","security","privacy","osx","disk-encryption","macos-setup","macos-security","macbook-security","dnscrypt-proxy"],"license":"MIT","category":"security-tools","readme_excerpt":"This guide is a collection of techniques for improving the security and privacy of macOS on Apple silicon Macs. It targets experienced users who want security practices commonly used by organizations, but is also suitable for novice users with an interest in privacy and security. For organization-managed Macs, see the macOS Security Compliance Project, maintained by the U.S. National Institute of Standards and Technology. This guide is provided \"as is\" - without warranties of any kind. You are solely responsible for any consequences of following it. - Basics - Threat model - Assets - Adversaries - Capabilities - Mitigations - Example model - Hardware - Installing macOS - System activation - Apple Account - App Store - Virtualization - Apple containers - First boot - Admin and user accounts - Caveats - Setup - Firmware - FileVault - Lockdown Mode - Firewall - Application layer firewall - Stealth mode - Signed apps - Reload firewall - Get state - AirDrop - Third-party firewalls - Packet filter - Example pf config - Firewall commands - Block networks - Services - Siri Suggestions and Spotlight - Homebrew - DNS - DNS profiles - Hosts file - DNSCrypt - Dnsmasq - Certificate authorities - Privoxy - Browser - Firefox - Chrome - Safari - Web browser privacy - Tor - VPN - PGP/GPG - Email - Thunderbird - Messengers - XMPP - Signal - iMessage - Malware - Downloading Software - App Sandbox - Hardened Runtime - Antivirus - Gatekeeper - System Integrity Protection - Metadata and artifacts ","default_branch":null,"files":null,"tree":[],"storefront":"/r/drduh","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/drduh/macOS-Security-and-Privacy-Guide/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}