GeoSn0w / hspGuard
Checks macOS for Kernel Task Port. It may help detect intrusive kexts that would leak the kernel task.
☆21Updated last year
Alternatives and similar repositories for hspGuard:
Users that are interested in hspGuard are comparing it to the libraries listed below
- Reexport symbols for Mach-O and ELF☆38Updated 7 years ago
- Tool for reverse-engineering Apple's sandbox☆56Updated 7 years ago
- Binary Format of iOS 13 Sandbox Profile Collection☆51Updated 5 years ago
- iOS10~iOS13 Edition) Dump Kext information from iOS kernel cache. Applicable to the kernel which dump from memory. The disassembly framew…☆20Updated 3 years ago
- Fun with iOS☆13Updated 11 years ago
- Radare2 plugin to parse modern iOS 64-bit kernel caches☆29Updated 6 years ago
- macOS kext for host_special_port(4) patch☆88Updated last year
- This tool will help to fix the Mach-O header of iOS kernel which dump from the memory. So that IDA or function symbol-related tools can l…☆22Updated 8 years ago
- Small util to discover OS X sysent via bruteforce☆33Updated 8 years ago
- crappy "debugger"-like memory reader, to inspect 32bit ios kernel after it paniced☆15Updated 6 years ago
- ios kernel class tree☆23Updated 5 years ago
- Get kernel symbols on device. No jailbreak required (note: unslid addresses)☆26Updated 6 years ago
- Accessing physical memory on iOS.☆50Updated 4 years ago
- empty_list - exploit for p0 issue 1564 (CVE-2018-4243) iOS 11.0 - 11.3.1 kernel r/w☆19Updated 6 years ago
- ☆31Updated 5 years ago
- Sniffing on port messages☆25Updated 8 years ago
- simple radare2 rap:// server☆25Updated 8 years ago
- Hopefully an open source equivalent of machlib.☆21Updated 7 years ago
- Google Project Zero OS X Vul Report Analysis☆33Updated 7 years ago
- install firehose for building xnu☆19Updated 5 years ago
- iOS Userland Forensic Dumping Framework for iOS 7/8☆19Updated 6 years ago
- ref: https://proteaswang.blogspot.com/2017/04/jailbreak-ios-812-and-analyze-related.html☆12Updated 6 years ago
- IDA plugin to extract Mach-O binaries located in the disassembly or data☆19Updated 5 years ago
- ☆29Updated 4 years ago
- PoC for the iOS 11.4.1 and MacOS 10.13 kernel vulnerability in lio_listio☆76Updated 6 years ago
- Inject a DyLib to an existing Mach-O file☆23Updated 9 years ago
- ☆36Updated 3 weeks ago
- Scripts were written by me☆19Updated last week
- xnu-10.10 mach-o loader that compiles in userland☆17Updated 9 years ago
- kernelcache encrypt/decrypt utility☆49Updated 13 years ago