macOS Dangerous Entitlements & TCC perms
高级
com.apple.rootless.install.heritable
com.apple.rootless.install
com.apple.system-task-ports(先前称为task_for_pid-allow)
com.apple.security.get-task-allow
com.apple.security.cs.debugger
com.apple.security.cs.disable-library-validation
com.apple.private.security.clear-library-validation
com.apple.security.cs.allow-dyld-environment-variables
com.apple.private.tcc.manager或com.apple.rootless.storage.TCC
system.install.apple-software和system.install.apple-software.standar-user
com.apple.private.security.kext-management
com.apple.private.icloud-account-access
com.apple.private.tcc.manager.check-by-audit-token
com.apple.private.apfs.revert-to-snapshot
com.apple.private.apfs.create-sealed-snapshot
keychain-access-groups
kTCCServiceSystemPolicyAllFiles
kTCCServiceAppleEvents
kTCCServiceEndpointSecurityClient
kTCCServiceSystemPolicySysAdminFiles
kTCCServiceSystemPolicyAppBundles

kTCCServiceAccessibility
中等
com.apple.security.cs.allow-jit
com.apple.security.cs.allow-unsigned-executable-memory
com.apple.security.cs.disable-executable-page-protection
com.apple.security.cs.allow-relative-library-loads
com.apple.private.nullfs_allow
kTCCServiceAll
kTCCServicePostEvent
最后更新于