> For the complete documentation index, see [llms.txt](https://pellaeon.gitbook.io/mobile-forensics/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://pellaeon.gitbook.io/mobile-forensics/mac.md).

# Checking Mac Computers

In this section we will go through some of the basic steps to take when checking a suspected Mac OS computer. Following are the tools (with links to their respective download pages) we are going to demonstrate here:

* [KnockKnock](https://objective-see.com/products/knockknock.html) developed by Objective-See
* [TaskExplorer](https://objective-see.com/products/taskexplorer.html) developed by Objective-See
* [KextViewr](https://objective-see.com/products/kextviewr.html) developed by Objective-See
* [Netiquette](https://objective-see.com/products/netiquette.html) developed by Objective-See
* Objective-See often [publishes new tools](https://objective-see.org/tools.html) and they might be helpful as well
* [AutoMacTC](https://www.crowdstrike.com/blog/automating-mac-forensic-triage/) developed by CrowdStrike (not updated since 2021, supports up to macOS 11)
