Experimentation environment for checkm8-vulnerable devices
☆57Dec 30, 2023Updated 2 years ago
Alternatives and similar repositories for respawn
Users that are interested in respawn are comparing it to the libraries listed below
Sorting:
- iOS bootchain patchers in Python☆13Jan 23, 2024Updated 2 years ago
- Plugin for loading MachO kernelcache and dSYM files to Binary Ninja☆40Mar 23, 2025Updated 11 months ago
- Python adaptation for pelara1n☆38Dec 25, 2022Updated 3 years ago
- Output from running Yarden's sandblaster on an iPhone15,2's iOS17 kernelcaches☆18Aug 7, 2024Updated last year
- some research results of sep☆20Apr 9, 2021Updated 4 years ago
- Checkm8 experiment to understand AP/SEP internals.☆196Feb 2, 2023Updated 3 years ago
- First pongoOS game #pongoOSMasterRace☆46Jun 29, 2023Updated 2 years ago
- iBoot/SecureROM Loader☆34Feb 24, 2023Updated 3 years ago
- LZVN compression/decompression tool☆18Feb 9, 2021Updated 5 years ago
- IDA plugin that resolves PPL calls to the actual underlying PPL function.☆56Feb 28, 2023Updated 3 years ago
- A Python library for the ipsw daemon API☆27Aug 14, 2023Updated 2 years ago
- Reversing the Apple sandbox☆168Dec 7, 2025Updated 2 months ago
- CLI frontend for com.apple.decmpfs / AppleFSCompression.framework☆33Oct 18, 2022Updated 3 years ago
- Boot arbitrary iBoot via ipwndfu's custom protocol on 32-bit platforms (and more)☆64Dec 21, 2025Updated 2 months ago
- Some old unexploited remote kernel memory corruption PoCs☆25Aug 19, 2024Updated last year
- Apple Silicon NOR dumper☆49Nov 8, 2023Updated 2 years ago
- Lib kernel r/w☆189Nov 1, 2021Updated 4 years ago
- xnu_gym is a pongoOS module that patches XNU to reintroduce previously known and patched vulnerabilities. This is an easy way to practice…☆57Jun 17, 2021Updated 4 years ago
- Insecurity as an IOService☆95Mar 25, 2025Updated 11 months ago
- ☆15Oct 27, 2022Updated 3 years ago
- sock_port_2 but legacy☆10Oct 29, 2023Updated 2 years ago
- iOS 15.0 - 15.3.1 sandbox escape technique using kernel read/write primitives☆132Jun 10, 2022Updated 3 years ago
- SEP firmware splitter, made in rust.☆42Oct 11, 2024Updated last year
- xnu build script☆71Aug 31, 2023Updated 2 years ago
- ☆139Feb 17, 2024Updated 2 years ago
- HomeDepot patcher script to jailbreak A5(X) iOS 8.x☆11Dec 29, 2024Updated last year
- A set of tools for fuzzing SecureROM. Managed to find and trigger checkm8.☆164Sep 18, 2021Updated 4 years ago
- a patcher for making downgradable iOS 14 firmware☆39Aug 24, 2022Updated 3 years ago
- Host your own *OS Entitlement Database☆54Oct 23, 2025Updated 4 months ago
- A tool to call CoreTrust evaluation from userland☆21Apr 30, 2024Updated last year
- A6 checkm8 exploit with checkra1n 0.1337 method.☆22Jan 14, 2024Updated 2 years ago
- ☆69Jan 13, 2023Updated 3 years ago
- Mapping physical memory to user space (EL0) on iOS.☆74Jan 3, 2023Updated 3 years ago
- A checkm8 utility for A7-A11 devices☆74Mar 24, 2025Updated 11 months ago
- Binary Ninja loader for 64 bits Apple SEPROMs☆58Sep 7, 2025Updated 5 months ago
- a Ghidra framework for iOS kernelcache reverse engineering☆363Nov 6, 2022Updated 3 years ago
- Fork of PongoOS which can be run in QEMU☆68Jun 7, 2021Updated 4 years ago
- 32/64 bit SecureROM/iBoot loader for IDA Pro. Also supports loading and decrypting encrypted .im4ps within IDA.☆73Mar 2, 2022Updated 3 years ago
- IDA loader for Apple's 64 bits iBoot, SecureROM and AVPBooter☆161Nov 2, 2024Updated last year