Brandon7CC / mac-wheres-my-bootstrapLinks
Detect common classes of XPC exploits
☆13Updated 6 months ago
Alternatives and similar repositories for mac-wheres-my-bootstrap
Users that are interested in mac-wheres-my-bootstrap are comparing it to the libraries listed below
Sorting:
- Scripts (python3 and Swift) for macOS to recursively check /Applications and also check /usr/local/bin, /usr/bin, and /usr/sbin for binar…☆97Updated 2 years ago
- Phorion Kronos is a macOS security tool designed to enhance Apple's Transparency Consent and Control (TCC) security and privacy mechanism…☆75Updated last year
- Secure example of an XPC helper written in Swift☆108Updated 5 years ago
- Scripts + patches to pwn vma2 (Virtualization.framework) macOS virtual machines☆56Updated 11 months ago
- Experimental improvements to Objective-C analysis for Binary Ninja☆38Updated this week
- List of legitimate macOS apps doing not great things☆35Updated 3 years ago
- Sniff XPC communication using Frida and Go☆136Updated last week
- Kass: A security research tool.☆83Updated 2 weeks ago
- XPC sniffer using LLDB☆44Updated 8 months ago
- Sniff XPC goodies on your iOS device.☆88Updated 4 years ago
- symbol dumps of iOS shared caches☆34Updated 2 years ago
- information and tools to understand the internals of Apple’s operating systems☆160Updated 3 weeks ago
- Ghidra CI/CD to build and host a universal macOS Ghidra.app☆39Updated last month
- ☆32Updated 8 months ago
- ☆29Updated 2 years ago
- Interact with trustcaches☆41Updated 2 years ago
- A macOS signed-app shim for running daemons with reliable capabilities.☆15Updated last month
- AEA metadata dumper☆46Updated 3 weeks ago
- This is a work-in-progress command line tool for reversing run-only AppleScripts. It will help parse the output of applescript-disassembl…☆69Updated 4 years ago
- macOS Security Research☆117Updated last year
- My collection of PoCs☆26Updated last year
- Apple Blocks Plugin for Binary Ninja☆32Updated last month
- slightly modified version of jonathan levins lsdtrip bin available at http://newosxbook.com/tools/lsdtrip.html☆19Updated last year
- A runtime ObjC class-dump☆73Updated 5 months ago
- Examples of programmatically interacting with ioreg and sysctl to query system info☆10Updated 3 years ago
- Programmatic Electron fuse detection☆19Updated 11 months ago
- Guessed headers of non-public Apple SDK☆41Updated 5 months ago
- Mapping XProtect's obfuscated malware family names to common industry names.☆86Updated last year
- CLI frontend for com.apple.decmpfs / AppleFSCompression.framework☆31Updated 2 years ago
- Welcome to Hoyt's SRD Repo for the Apple Security Research Device. Contribute Code or Open an Issue or Discussion.☆69Updated 8 months ago