gdbinit / readphysmem
A small utility to read and write to Macs physical memory using default AppleHWAccess.kext.
☆25Updated 9 years ago
Alternatives and similar repositories for readphysmem:
Users that are interested in readphysmem are comparing it to the libraries listed below
- An OSX exploitation helper library.☆35Updated 9 years ago
- task_for_pid injection that doesn't suck☆59Updated 9 years ago
- A PoC Mach-O infector via library injection☆64Updated 11 years ago
- MPRESS dumper for OS X☆65Updated 10 years ago
- The grey fox☆25Updated 8 years ago
- Automatically exported from code.google.com/p/pac4mac☆40Updated 5 years ago
- Bypass Google's Santa☆22Updated 9 years ago
- Materials from presentation☆20Updated 9 years ago
- OS X rootkit loader version #1☆18Updated 9 years ago
- A kernel extension to mitigate Gatekeeper bypasses☆49Updated 9 years ago
- OS X tool for dumping IOKit hierarchies in DOT format.☆46Updated 9 years ago
- Patch kextd using radare2☆16Updated 9 years ago
- Dealing with Mach-O kexts, vtables and more☆85Updated 6 years ago
- PoC kext to disable OS X anti-virus software☆15Updated 13 years ago
- Small util to dump the IDT table of a running OS X system with kmem enabled☆20Updated 10 years ago
- ☆71Updated 10 years ago
- ☆48Updated 9 years ago
- LLDB engine based tool to instrument OSX apps and triage crashes☆26Updated 8 years ago
- Integrity checking script for Apple Thunderbolt to Ethernet adapters, to check for attacks similar to Thunderstrike 2☆26Updated 9 years ago
- A TrustedBSD module to control execution of binaries with suid bit set☆37Updated 10 years ago
- Mach Fuzzing Tools☆32Updated 11 years ago
- Local privilege escalation for OS X 10.10.5 via CVE-2016-1828.☆84Updated 8 years ago
- A Kext that can be used to disable Rootless in OS X El Capitan/macOS Sierra. You need to sign it OR use an exploit to make OS X load it.☆78Updated 4 years ago
- Quickly find references to the specified Immediate number, or find the function call of specifies offset, and generate C++ functions call…☆25Updated 7 years ago
- What Would Capstone Decode - IDA plugin that implements a Capstone powered IDA view☆58Updated 8 years ago
- Runtime code injection suite for exploring OS X process security☆37Updated 15 years ago
- Improved version of David Elliott's SerialKDPProxy☆31Updated 5 years ago
- Hopper Instruction Reference Plugin☆46Updated 9 years ago
- Volatility plugin to extract FileVault 2 VMK's☆50Updated 3 years ago
- circuit board (PCB) schematics for 30-pin iPod serial debugging☆38Updated 7 years ago