ChiChou / novacane
Some frida scripts
☆64Updated 3 weeks ago
Related projects ⓘ
Alternatives and complementary repositories for novacane
- Inspect and manipulate UIKit-based GUIs through Frida.☆54Updated 9 months ago
- ☆112Updated 3 months ago
- Objective-C runtime interop from Frida☆49Updated 2 months ago
- Shortcut to automate your iproxy, debugserver, lldb workflow☆35Updated last week
- p-joker -- iOS/MacOS kernelcache/kexts analysis tool☆107Updated 4 years ago
- ios iokit fuzzer (really probably isn't that useful anymore tbh)☆60Updated 7 years ago
- A fuzzer for the iOS kernel and userland☆44Updated 6 years ago
- A tracer based on frida for XPC messages in iOS and macOS.☆30Updated last year
- An IDA Toolkit for analyzing iOS kernelcaches.☆103Updated last year
- LLDB wrapped and empowered by iPython's features☆131Updated 3 weeks ago
- tree but for Objective-C messages.☆115Updated 10 months ago
- Demo exploit code for CVE-2020-27904, a tfp0 bug.☆65Updated 3 years ago
- Log all syscalls executed by a process (iOS / checkra1n / xnuspy)☆58Updated 2 years ago
- Utilities to deploy frida on rootless iOS and more☆120Updated 2 months ago
- My ongoing premier on reversing Swift☆61Updated 4 months ago
- A tool for reversing IOKit classes from the iOS 12's new kernelcache format.☆23Updated 6 years ago
- Frida library for interacting with Swift programs. Superseded by https://github.com/frida/frida-swift-bridge☆96Updated 6 years ago
- ☆38Updated 3 years ago
- IDA loader for SEP firmware with dyld cache support.☆51Updated 2 months ago
- ☆47Updated 3 years ago
- Hooks libboringssl.dylib to extract TLS keys and enables the traffic from iOS apps to be decrypted.☆49Updated last year
- Transform any ARM macho executable to a dynamic library☆75Updated 2 years ago
- load iOS12 kernelcaches and PAC code in IDA☆60Updated 6 years ago
- Slides from my conference presentations.☆79Updated 4 years ago
- ☆14Updated 3 years ago
- Grab your libboringssl keys to decrypt traffic (pcaps)☆60Updated 4 years ago
- Demo: Anti Anti-Debug in iOS Kernel☆73Updated 6 years ago
- use https://github.com/argp/iBoot64helper which is the orginal repo and far more advanced☆32Updated 5 years ago
- iOS system call/Mach trap interception for checkra1n'able devices☆148Updated 3 years ago