JGoyd / iOS-Attack-Chain-CVE-2025-31200-CVE-2025-31201Links
CVE-2025-31200 is a zero-day, zero-click RCE in iOS CoreAudio’s AudioConverterService, triggered by a malicious audio file via iMessage/SMS. Exploitation bypassed Blastdoor, enabled kernel escalation (CVE-2025-31201), and allowed token theft until patched in iOS 18.4.1 (Apr 16, 2025).
☆139Updated this week
Alternatives and similar repositories for iOS-Attack-Chain-CVE-2025-31200-CVE-2025-31201
Users that are interested in iOS-Attack-Chain-CVE-2025-31200-CVE-2025-31201 are comparing it to the libraries listed below
Sorting:
- Advanced exploits that I wrote for Pwn2Own competitions and other occasions☆169Updated last year
- Safari 1day RCE Exploit☆153Updated 9 months ago
- DiffRays is a research-oriented tool for binary patch diffing, designed to aid in vulnerability research, exploit development, and revers…☆268Updated 3 weeks ago
- An automatic Blind ROP exploitation tool☆208Updated 2 years ago
- Slides and videos from my public speeches / conferences☆78Updated 3 weeks ago
- This contains notes and slides for my Objective by the Sea talk☆97Updated 2 years ago
- Hacking Windows through iTunes - Local Privilege Escalation 0-day☆97Updated last year
- Mega repo for exploit development. Contains individual exploits and libraries to assist during exploitation☆46Updated 3 years ago
- ios tingz☆63Updated 3 years ago
- C and Python training from our Vulnerability Researcher Development Program (VRDP)☆83Updated 4 months ago
- An XNU kernel race condition bug☆46Updated 10 months ago
- Oversecured Vulnerable iOS App☆230Updated last year
- Binary Exploitation Phrack CTF Challenge☆139Updated 4 months ago
- Fuzz iOS URL schemes☆123Updated 2 weeks ago
- This repository contains the public work I produced, wheter it is research, post, slides, sometimes videos, and materials of my talks.☆52Updated 4 months ago
- Escape macOS Sandbox using sharedfilelistd exploit☆63Updated 5 months ago
- SpiralBL0CK / Remote-buffer-overflow-over-wifi_stack-in-wpa_supplicant-binary-in-android-11-platform-samsung-a20eRemote buffer overflow over wifi_stack in wpa_supplicant binary in android 11, platform:samsung a20e, stock options so like works out of …☆48Updated last year
- A tool for generating detailed, locally-processed reports from iOS backups, supporting encrypted and unencrypted data.☆61Updated last year
- Published security vulnerabilities for Apple platform with linked public repositories☆32Updated last year
- list of organizations offering vulnerability research/reverse engineering jobs☆101Updated 3 months ago
- ☆131Updated 2 years ago
- The resources for glibc Malloc heap exploitation course by Maxwell Dulin and Security Innovation.☆170Updated last year
- ☆19Updated last year
- 🐛 UCLA ACM Cyber's Fuzzing Lab☆87Updated last month
- ASLR bypass without infoleak☆164Updated 4 years ago
- ☆509Updated 2 months ago
- Leveraging patch diffing to discover new vulnerabilities☆137Updated last year
- Writeups, PoCs of the bugs I found while preparing for the Pwn2Own Miami 2023 contest targeting UaGateway from the OPC UA Server category…☆63Updated 2 years ago
- ☆39Updated last year
- A list of bizarre crackmes☆135Updated last month