a Ghidra framework for iOS kernelcache reverse engineering
☆363Nov 6, 2022Updated 3 years ago
Alternatives and similar repositories for ghidra_kernelcache
Users that are interested in ghidra_kernelcache are comparing it to the libraries listed below
Sorting:
- arm64 IOKit class dumper☆289Jan 5, 2026Updated last month
- An IDA Toolkit for analyzing iOS kernelcaches.☆299Jul 24, 2020Updated 5 years ago
- An iOS kernel debugger based on a KTRR bypass for A11 iPhones; works with LLDB and IDA Pro.☆688Oct 22, 2022Updated 3 years ago
- An IDA Toolkit for analyzing iOS kernelcaches.☆109May 15, 2025Updated 9 months ago
- Lib kernel r/w☆189Nov 1, 2021Updated 4 years ago
- an iOS kernel function hooking framework for checkra1n'able devices☆582Oct 6, 2021Updated 4 years ago
- kernel exploit for Apple iOS 13.X☆185Nov 27, 2020Updated 5 years ago
- ANE kernel r/w exploit for iOS 15 and macOS 12☆302Nov 20, 2022Updated 3 years ago
- An IDAPython module for enhancing c++ support on top of ida_kernelcache☆140May 15, 2025Updated 9 months ago
- Dev tools for probing IOKit☆200Sep 23, 2023Updated 2 years ago
- Another Virtualization.framework demo project, with focus to iBoot (WIP)☆176Dec 2, 2023Updated 2 years ago
- Sniff XPC goodies on your iOS device.☆96Nov 14, 2020Updated 5 years ago
- Exploit for CVE-2021-30807☆132Nov 29, 2021Updated 4 years ago
- p-joker -- iOS/MacOS kernelcache/kexts analysis tool☆111May 18, 2020Updated 5 years ago
- IDAPython loader to help with AArch64 iBoot, iBEC, and SecureROM reverse engineering☆262Feb 21, 2022Updated 4 years ago
- IDA loader for SEP firmware with dyld cache support.☆67Aug 22, 2024Updated last year
- XNU kernel, Kernel Collection and CodeQL build scripts☆274Jan 8, 2026Updated last month
- IDA plugin to find code cross references to virtual functions using PAC codes☆147Mar 16, 2022Updated 3 years ago
- xnu build script☆71Aug 31, 2023Updated 2 years ago
- Reversing the Apple sandbox☆165Dec 7, 2025Updated 2 months ago
- iOS 12.0-13.3 tfp0☆153Nov 16, 2020Updated 5 years ago
- Extract Binaries from Apple's Dyld Shared Cache☆469Jan 27, 2025Updated last year
- ☆244Sep 21, 2021Updated 4 years ago
- Tool for getting and setting nonce without triggering KPP/KTRR/PAC.☆113Apr 22, 2023Updated 2 years ago
- ☆139Feb 17, 2024Updated 2 years ago
- iOS 15.0 - 15.3.1 sandbox escape technique using kernel read/write primitives☆132Jun 10, 2022Updated 3 years ago
- Decompiling macOS Hypervisor.framework by hand☆134Sep 13, 2022Updated 3 years ago
- Unstripped iOS Kernels☆219Feb 11, 2020Updated 6 years ago
- iOS system call/Mach trap interception for checkra1n'able devices☆159Aug 10, 2021Updated 4 years ago
- symbol dumps of iOS shared caches☆34Oct 15, 2022Updated 3 years ago
- A collection of types & functions definitions useful for iOS/macOS binaries analysis.☆389Jul 10, 2025Updated 7 months ago
- Reversing the Apple sandbox☆251Apr 24, 2025Updated 10 months ago
- ☆85May 20, 2025Updated 9 months ago
- Useful resources for iOS hacking☆1,889May 24, 2025Updated 9 months ago
- ☆51Jul 20, 2020Updated 5 years ago
- Binary code-coverage fuzzer for macOS, based on libFuzzer and LLVM☆180May 19, 2025Updated 9 months ago
- Sniff XPC communication using Frida and Go☆156Feb 10, 2026Updated 2 weeks ago
- Here is some resources about macOS/iOS system security.☆537Feb 19, 2025Updated last year
- A set of tools for fuzzing SecureROM. Managed to find and trigger checkm8.☆164Sep 18, 2021Updated 4 years ago