KpwnZ / d22-qemu
A QEMU fork emulates D22AP/D221AP devices(iPhone X).
☆40Updated 11 months ago
Alternatives and similar repositories for d22-qemu:
Users that are interested in d22-qemu are comparing it to the libraries listed below
- a7 sep bug☆52Updated last year
- Translate and patch arm64e binaries or macOS arm64 binaries to run on an arm64 iPhone at runtime.☆50Updated 2 years ago
- A custom shellcode hook for checkra1n 0.1337 written in c!☆38Updated last year
- Collection of my bugs and CVE, with PoC or writeup☆49Updated 10 months ago
- 32/64 bit SecureROM/iBoot loader for IDA Pro. Also supports loading and decrypting encrypted .im4ps within IDA.☆72Updated 2 years ago
- Find some iBoot functions in an iBoot64.☆41Updated 4 years ago
- App with PoC of CVE-2024-44285☆42Updated 2 months ago
- Fork of PongoOS which can be run in QEMU☆64Updated 3 years ago
- IDA loader for SEP firmware with dyld cache support.☆55Updated 6 months ago
- A checkm8 utility for A7-A11 devices☆64Updated 9 months ago
- m1n1 with support for A7-A11, T2 SoCs☆32Updated this week
- iPod nano 6 (S5L8723) implementation of S5Late bootrom exploit. Now also iPod shuffle 4 (S5L8443)☆15Updated 2 months ago
- ☆67Updated 2 years ago
- Patch the iBoot64 with generic patches.☆50Updated 11 months ago
- IDA loader to help with SEPROM reverse engineering.☆33Updated 2 months ago
- A tool to call CoreTrust evaluation from userland☆16Updated 9 months ago
- Binary Ninja loader for 64 bits Apple SEPROMs☆50Updated 8 months ago
- ☆69Updated 8 months ago
- ☆44Updated 2 months ago
- iOS 14 kernel exploit based on PhysPuppet☆58Updated 4 months ago
- A python lib for manipulating IMG4, IM4M and IM4P files☆12Updated last year
- Private headers & entitlements for daemons, frameworks, applications private frameworks and more for iOS 17.0 21A328☆19Updated last year
- Search running processes on iOS for instances of a given objc class.☆41Updated last month
- Interact with trustcaches☆39Updated 2 years ago
- Experimentation environment for checkm8-vulnerable devices☆53Updated last year
- Boot arbitrary iBoot via ipwndfu's custom protocol on some cursed platforms and more☆51Updated last month
- Log all syscalls executed by a process (iOS / checkra1n / xnuspy)☆64Updated 2 years ago
- A library that enables dynamically rebinding symbols in Mach-O binaries running on iOS.☆16Updated 2 months ago
- An *OS bootchain patching library.☆16Updated last week
- Output from running Yarden's sandblaster on an iPhone15,2's iOS17 kernelcaches☆17Updated 6 months ago