KpwnZ / d22-qemu
A QEMU fork emulates D22AP/D221AP devices(iPhone X).
☆35Updated 8 months ago
Related projects ⓘ
Alternatives and complementary repositories for d22-qemu
- a7 sep bug☆50Updated last year
- A custom shellcode hook for checkra1n 0.1337 written in c!☆37Updated 11 months ago
- Patch the iBoot64 with generic patches.☆49Updated 8 months ago
- Collection of my bugs and CVE, with PoC or writeup☆48Updated 7 months ago
- ☆70Updated 5 months ago
- Translate and patch arm64e binaries or macOS arm64 binaries to run on an arm64 iPhone at runtime.☆45Updated 2 years ago
- Experimentation environment for checkm8-vulnerable devices☆54Updated 10 months ago
- Find some iBoot functions in an iBoot64.☆41Updated 3 years ago
- IDA loader to help with SEPROM reverse engineering.☆32Updated 5 months ago
- ☆35Updated 2 years ago
- ☆67Updated 2 years ago
- Fork of PongoOS which can be run in QEMU☆63Updated 3 years ago
- Binary Ninja loader for 64 bits Apple SEPROMs☆49Updated 5 months ago
- iBoot/SEPOS decryption kit for JTAGgable iOS device prototypes☆81Updated 2 weeks ago
- A checkm8 utility for A7-A11 devices☆56Updated 6 months ago
- m1n1 with support for A7-A11, T2 SoCs☆24Updated last week
- An open source implemention of Apple's `launchctl(1)`☆69Updated 3 months ago
- Mapping physical memory to user space (EL0) on iOS.☆67Updated last year
- Interact with trustcaches☆39Updated last year
- A working busybox for iOS and macOS☆27Updated 2 years ago
- IDA loader for SEP firmware with dyld cache support.☆52Updated 3 months ago
- A python lib for manipulating IMG4, IM4M and IM4P files☆11Updated last year
- 32/64 bit SecureROM/iBoot loader for IDA Pro. Also supports loading and decrypting encrypted .im4ps within IDA.☆68Updated 2 years ago
- Insecurity as an IOService☆76Updated last year
- Proof-of-concept for the CVE-2022-42864 IOHIDFamily race condition☆62Updated last year
- IDA loader for Apple's 64 bits iBoot, SecureROM and AVPBooter☆138Updated 2 weeks ago
- An *OS bootchain patching library.☆16Updated this week
- CVE-2024-44258☆53Updated 2 weeks ago
- A tool to call CoreTrust evaluation from userland☆15Updated 6 months ago
- iOS 15.0 - 15.3.1 sandbox escape technique using kernel read/write primitives☆123Updated 2 years ago