xscertd-helper

JSON
executablemacOS262.7 KBx86_64, arm64

Security framework utility — manages keychain access, certificates, and code signing operations

Performs cryptographic operations and security certificate management through the macOS Security framework and keychain. Handles code signing validation, certificate chain verification, and secure credential storage/retrieval. Communicates with 7 network endpoints for certificate revocation checking, timestamp validation, and potential security policy updates. Accesses 5 bundle identifiers and manages multiple file paths, likely for code signature verification and entitlement validation workflows.AI

Fingerprint

Platform
macOS
Type
executable
Arch
x86_64, arm64
Min OS
26.1.0
SDK
26.1.0
File Size
262.7 KB
UUID
28D17D4A-2D8A-3BCD-AD58-18E149A51CDC
Analyzed
2026-04-09T10:12:50Z
CDHash
21d5b1c97e8902674f7b2926a7229fd2675365c0ec415c6e1b10433303f536f0

Interesting Strings

Network Surface

DNA Capability Vector

Location
0
Keychain
0
Network
0
Storage
0
Hardware
0
IPC
0
Analytics
0
Security
2
System
0

Behavioral Profile

URL Endpoints
4
Telemetry Strings
0
File Paths
9
Bundle IDs
5
IOKit Constants
0
Library Functions
2

Structural HashesSHA-256

Static Libraries0 / 107 functions identified

Function Matches(2)

PEM_read_bioopenssl 3.2High
PEM_read_bioopenssl 3.2High

Functions(107)

0x100000d70sub_100000d70
0x1000015e8sub_1000015e8
0x100001668sub_100001668
0x1000017d8sub_1000017d8
0x1000019d8sub_1000019d8
0x100001d44sub_100001d44
0x1000020dcsub_1000020dc
0x100002218sub_100002218
0x100002630sub_100002630
0x10000275csub_10000275c
0x100002d60sub_100002d60
0x100002ee4sub_100002ee4
0x1000031bcsub_1000031bc
0x100003874sub_100003874
0x100003a14sub_100003a14
0x100003d7csub_100003d7c
0x100003e58sub_100003e58
0x100004274sub_100004274
0x100004804sub_100004804
0x100004860sub_100004860

Imports285 symbols from 9 dylibs

Exports1

_mh_execute_header0x0