Brandon7CC / mac-wheres-my-bootstrap
Detect common classes of XPC exploits
☆13Updated 4 months ago
Alternatives and similar repositories for mac-wheres-my-bootstrap:
Users that are interested in mac-wheres-my-bootstrap are comparing it to the libraries listed below
- Scripts (python3 and Swift) for macOS to recursively check /Applications and also check /usr/local/bin, /usr/bin, and /usr/sbin for binar…☆97Updated 2 years ago
- Phorion Kronos is a macOS security tool designed to enhance Apple's Transparency Consent and Control (TCC) security and privacy mechanism…☆75Updated last year
- XPC sniffer using LLDB☆44Updated 6 months ago
- Ghidra CI/CD to build and host a universal macOS Ghidra.app☆38Updated last week
- Sniff XPC communication using Frida and Go☆130Updated this week
- Apple Silicon NOR dumper☆48Updated last year
- Secure example of an XPC helper written in Swift☆107Updated 5 years ago
- Scripts + patches to pwn vma2 (Virtualization.framework) macOS virtual machines☆55Updated 10 months ago
- ☆21Updated last year
- Translate and patch arm64e binaries or macOS arm64 binaries to run on an arm64 iPhone at runtime.☆51Updated 2 years ago
- An open source implemention of Apple's `launchctl(1)`☆82Updated 3 months ago
- Proof-of-concept for the CVE-2022-42864 IOHIDFamily race condition☆67Updated 2 years ago
- My collection of PoCs☆26Updated last year
- tart, but with custom AVPBooter ROM, serial I/O, DFU mode, GDB debugging (port 8000), and panic halting. See help menus for `tart create`…☆43Updated last year
- Apple Blocks Plugin for Binary Ninja☆30Updated 3 months ago
- Linking against PrivateFrameworks on macOS.☆19Updated 3 years ago
- Interact with trustcaches☆41Updated 2 years ago
- CLI frontend for com.apple.decmpfs / AppleFSCompression.framework☆31Updated 2 years ago
- Proof-of-concept for CVE-2022-26766 on macOS 12.3.1☆84Updated 2 years ago
- Articles and tools related to research in the Apple environment (mainly macOS).☆171Updated this week
- This is a work-in-progress command line tool for reversing run-only AppleScripts. It will help parse the output of applescript-disassembl…☆67Updated 4 years ago
- Reversing the Apple sandbox☆143Updated 5 months ago
- macOS Security Research☆116Updated last year
- Dumps files from 'rkos' ftab firmware images found in Apple micro-devices.☆59Updated 3 years ago
- App with PoC of CVE-2024-44285☆42Updated 4 months ago
- CVE-2022-46718: an app may be able to read sensitive location information.☆27Updated last year
- symbol dumps of iOS shared caches☆34Updated 2 years ago
- App sandbox escapes for macOS☆29Updated 4 years ago
- Examples of programmatically interacting with ioreg and sysctl to query system info☆10Updated 3 years ago
- A runtime ObjC class-dump☆72Updated 4 months ago