


I agree with the others that with DNS-level and ad blocker level hardening to try to crack down on malvertising, you should be fine without a third party AV software.Ĭurrently third party AVs rely heavily on custom hooks via kernel extensions (kexts), and Apple is trying to deprecate those. Furthermore, Apple's GateKeeper is cloud-connected with both certificate and application level blocking, much like SmartScreen or SONAR. Note that in macOS Big Sur, the so called built-in antivirus (XProtect and Malware Removal Tool) are significantly revamped, and use YARA rules for signatures instead of dumbly hardcoded hashes.
