bazad / blanketLinks
CVE-2018-4280: Mach port replacement vulnerability in launchd on iOS 11.2.6 leading to sandbox escape, privilege escalation, and codesigning bypass.
☆255Updated 6 years ago
Alternatives and similar repositories for blanket
Users that are interested in blanket are comparing it to the libraries listed below
Sorting:
- Unstripped iOS Kernels☆218Updated 5 years ago
- An IDA Toolkit for analyzing iOS kernelcaches.☆293Updated 4 years ago
- iOS Kernel utilities☆243Updated 6 years ago
- ☆79Updated 7 years ago
- low effort jb☆139Updated 7 years ago
- Reversing the Apple sandbox☆234Updated last month
- An iOS kernel introspection tool.☆261Updated 5 years ago
- powerd exploit : Sandbox escape to root for Apple iOS < 12.2 on A11 devices☆109Updated 6 years ago
- IDA Pro/Hexrays plugins☆132Updated 6 years ago
- IDAPython loader to help with AArch64 iBoot, iBEC, and SecureROM reverse engineering☆262Updated 3 years ago
- p-joker -- iOS/MacOS kernelcache/kexts analysis tool☆109Updated 5 years ago
- CVE-2018-4185: iOS 11.2-11.2.6 kernel pointer disclosure introduced by Apple's Meltdown mitigation.☆85Updated 7 years ago
- untethered+unsandboxed code execution in iOS 11☆185Updated 5 years ago
- A library to execute code in the context of other processes on iOS 11.☆82Updated 6 years ago
- Slides from my conference presentations.☆80Updated 4 years ago
- Dealing with Mach-O kexts, vtables and more☆85Updated 6 years ago
- Lockdown related research, tools and POCs.☆91Updated 6 years ago
- OS X 10.11.6 LPE PoC for CVE-2016-4655 / CVE-2016-4656☆98Updated 8 years ago
- IOSurface exploit☆222Updated 11 months ago
- iOS Kernel utilities☆159Updated 9 years ago
- PoC for the iOS 11.4.1 and MacOS 10.13 kernel vulnerability in lio_listio☆76Updated 6 years ago
- A 0day exploit for ur0‘s apfs bug by me (Pwn20wnd)☆126Updated 7 years ago
- iOS KEXT loader 7.x-9.x☆95Updated 7 years ago
- multi_path with root and sandbox escape☆102Updated 6 years ago
- Toolkit for binary iOS / OS X sandbox profiles☆146Updated 9 years ago
- arm64 IOKit class dumper☆275Updated last month
- Give me tfp0, I give you jelbrek☆262Updated 4 years ago
- Example showing how to use Frida for standalone injection of a custom payload☆163Updated 5 years ago
- Various files helping to better understand the iOS / WatchOS / tvOS kernels☆106Updated 7 years ago
- FRAPL Framework☆151Updated 8 years ago