Lightweight toolkit to explore and modify address translation for ARM64.
☆44Jul 25, 2021Updated 4 years ago
Alternatives and similar repositories for MMUit
Users that are interested in MMUit are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Find some iBoot functions in an iBoot64.☆40Feb 10, 2021Updated 5 years ago
- iBoot/SecureROM Loader☆35Feb 24, 2023Updated 3 years ago
- Small binja plugin to import header file to types☆18Nov 11, 2022Updated 3 years ago
- reversing mtk-su☆17Mar 4, 2020Updated 6 years ago
- palera1n loader but more baked☆20Jan 15, 2023Updated 3 years ago
- ☆15Oct 27, 2022Updated 3 years ago
- A set of tools for fuzzing SecureROM. Managed to find and trigger checkm8.☆165Sep 18, 2021Updated 4 years ago
- PCIDriverKit proof-of-concept for CVE-2022-26763☆37Jul 2, 2022Updated 3 years ago
- syzkaller is an unsupervised coverage-guided kernel fuzzer☆13Oct 3, 2020Updated 5 years ago
- Binary View plugin for reverse engineering iBoot like binaries with Binary Ninja☆55Jan 25, 2024Updated 2 years ago
- UPDATED: All the action is at https://github.com/xsscx/srd☆13Jul 12, 2021Updated 4 years ago
- A custom shellcode hook for checkra1n 0.1337 written in c!☆35Dec 20, 2023Updated 2 years ago
- ☆40Feb 10, 2021Updated 5 years ago
- CVE-2020-9992 - A design flaw in MobileDevice.framework/Xcode and iOS/iPadOS/tvOS Development Tools allows an attacker in the same networ…☆74Sep 23, 2020Updated 5 years ago
- Exploit for CVE-2021-30807☆134Nov 29, 2021Updated 4 years ago
- some research results of sep☆20Apr 9, 2021Updated 4 years ago
- Analyzes a binary iOS kernel to determine function offsets and where to apply the canonical jailbreak patches.☆67Nov 6, 2017Updated 8 years ago
- Fork of PongoOS which can be run in QEMU☆69Jun 7, 2021Updated 4 years ago
- An open source implemention of Apple's `launchctl(1)`☆91Sep 18, 2025Updated 6 months ago
- Patch the iBoot64 with generic patches.☆52Mar 19, 2024Updated 2 years ago
- Golang bindings for the Binary Ninja Arm64 Disassembler.☆14Mar 16, 2026Updated last week
- IDA loader for SEP firmware with dyld cache support.☆69Aug 22, 2024Updated last year
- DeviceTree☆82Oct 12, 2024Updated last year
- Description of Apple's LEAP ISA☆16Nov 21, 2022Updated 3 years ago
- A lightweight ARM reverse engineering tool.☆24Jun 18, 2024Updated last year
- An IDA Toolkit for analyzing iOS kernelcaches.☆112May 15, 2025Updated 10 months ago
- IDA loader for Apple's 64 bits iBoot, SecureROM and AVPBooter☆164Nov 2, 2024Updated last year
- Kernel-based method to take screenshots on iOS, works with encrypted videos.☆60Mar 10, 2021Updated 5 years ago
- Tool to patch the ASLR slide generation in the kernel to disable user-land ASLR on 32-bit iOS☆32Dec 6, 2020Updated 5 years ago
- Aarch64 architecture plugin☆86Mar 7, 2024Updated 2 years ago
- Reverse-engineering tools and exploits for Samsung's implementation of TrustZone☆158Dec 16, 2019Updated 6 years ago
- Mapping physical memory to user space (EL0) on iOS.☆75Jan 3, 2023Updated 3 years ago
- Experiment to attempt to build Apple's dyld tools.☆64May 29, 2020Updated 5 years ago
- ☆42Aug 5, 2021Updated 4 years ago
- Binja Arm64 Disassembler☆101Feb 10, 2026Updated last month
- An IDA plugin that eases reversing of binaries that have been code-size-optimized with function outlining☆225Dec 31, 2024Updated last year
- A bootloader and experimentation playground for Apple Silicon. Modified to boot XNU/macOS kernels.☆19Dec 25, 2021Updated 4 years ago
- Plugin for loading MachO kernelcache and dSYM files to Binary Ninja☆40Mar 23, 2025Updated last year
- WebKit/JSC CodeQL Databases☆17Dec 15, 2025Updated 3 months ago