DanyL / lockdownd_playground
Lockdown related research, tools and POCs.
☆91Updated 5 years ago
Alternatives and similar repositories for lockdownd_playground:
Users that are interested in lockdownd_playground are comparing it to the libraries listed below
- iOS ARM64 kernel patchfinder☆76Updated 5 years ago
- An iOS kernel exploit for iOS 11 through 12.1.2. Non-SMAP (<=A9) devices only.☆80Updated 5 years ago
- Automatically download and decrypt SecureRom stuff (iBSS, iBEC, iBoot, etc.) for all iOS versions available.☆51Updated 5 years ago
- PoC for the iOS 11.4.1 and MacOS 10.13 kernel vulnerability in lio_listio☆76Updated 6 years ago
- Tool for getting and setting nonce without triggering KPP/KTRR/PAC.☆114Updated last year
- powerd exploit : Sandbox escape to root for Apple iOS < 12.2 on A11 devices☆109Updated 5 years ago
- Fork of PongoOS which can be run in QEMU☆65Updated 3 years ago
- WIP iOS 11 - 12.2 & 13b1,b2 Safari Jailbreak☆44Updated 4 years ago
- getf tfp0 on iOS 12.0 - 12.1.2☆65Updated 6 years ago
- ios iokit fuzzer (really probably isn't that useful anymore tbh)☆62Updated 8 years ago
- iOS 10.0-12.2 tfp0☆129Updated 5 years ago
- iOS 12.0-13.3 tfp0☆151Updated 4 years ago
- A fuzzer for the iOS kernel and userland☆44Updated 6 years ago
- untethered+unsandboxed code execution in iOS 11☆186Updated 5 years ago
- iOS system call/Mach trap interception for checkra1n'able devices☆154Updated 3 years ago
- Unstripped iOS kernel extensions and more. More coming soon.☆56Updated 5 years ago
- call functions in a remote process using Mach API☆102Updated this week
- iBoot-1145.3 Image3/heap stack RE (+unholy tools)☆77Updated last year
- Slides from my conference presentations.☆80Updated 4 years ago
- Spice - an unfinished iOS 11 untether☆115Updated 3 years ago
- macOS kext for host_special_port(4) patch☆88Updated last year
- xnu_gym is a pongoOS module that patches XNU to reintroduce previously known and patched vulnerabilities. This is an easy way to practice…☆55Updated 3 years ago
- arm64 IOKit class dumper☆267Updated last week
- 64-bit iOS boot image patcher written in C☆146Updated 2 years ago
- multi_path with root and sandbox escape☆101Updated 6 years ago
- iOS Kernel Decompressor☆86Updated 4 years ago
- Analyzes a binary iOS kernel to determine function offsets and where to apply the canonical jailbreak patches.☆66Updated 7 years ago
- IDA loader to help with SEPROM reverse engineering.☆33Updated 3 months ago
- A 0day exploit for ur0‘s apfs bug by me (Pwn20wnd)☆126Updated 6 years ago
- ☆36Updated last month