What cmdReporter Does
cmdReporter is a security monitoring tool for macOS. Using minimal resources, cmdReporter collects the data IT security teams need to hunt threats to macOS and streams the logs in real time to nearly any analysis server.
Our approach filters and normalizes all logs coming from macOS into a single format that is easy for any log analysis software to parse and search.
cmdReporter Server?
There is no cmdReporter server, we are designed to integrate and stream directly from the mac to nearly any SIEM, log collection, or data lake tool that your organization already uses to store and analyze computer logs.
Why cmdReporter is Different
cmdReporter is designed to work with macOS and only macOS. We do this by:
- No kernel extension.
- Release-day support for new macOS versions
- Near-zero performance impact.
- 100% preference coverage for configuration profiles.