jsherman212 / svc_stalker
iOS system call/Mach trap interception for checkra1n'able devices
☆150Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for svc_stalker
- Tool for getting and setting nonce without triggering KPP/KTRR/PAC.☆109Updated last year
- iOS 10.0-12.2 tfp0☆128Updated 5 years ago
- Lib kernel r/w☆191Updated 3 years ago
- Log all syscalls executed by a process (iOS / checkra1n / xnuspy)☆58Updated 2 years ago
- call functions in a remote process using Mach API☆100Updated 9 months ago
- iOS 12.0-13.3 tfp0☆151Updated 4 years ago
- A arm offsetfinder. It finds offsets, patches, parses Mach-O and even supports IMG4/IMG3☆144Updated 3 months ago
- untethered+unsandboxed code execution in iOS 11☆189Updated 4 years ago
- iOS ARM64 kernel patchfinder☆74Updated 5 years ago
- Spice - an unfinished iOS 11 untether☆113Updated 3 years ago
- Checkm8 PoC tool for A8, A8X and A9 devices that allows you to boot untrusted images (macOS only, credits: checkra1n team).☆86Updated 3 years ago
- A free runtime modification library.☆99Updated 4 years ago
- arm64 IOKit class dumper☆260Updated 2 weeks ago
- Transform any ARM macho executable to a dynamic library☆75Updated 2 years ago
- Lockdown related research, tools and POCs.☆91Updated 5 years ago
- 64-bit iOS boot image patcher written in C☆147Updated 2 years ago
- JB ETA????☆29Updated 3 years ago
- Analyzes a binary iOS kernel to determine function offsets and where to apply the canonical jailbreak patches.☆65Updated 7 years ago
- tree but for Objective-C messages.☆115Updated 10 months ago
- Kernel-based method to take screenshots on iOS, works with encrypted videos.☆61Updated 3 years ago
- iOS 15.0 - 15.3.1 sandbox escape technique using kernel read/write primitives☆123Updated 2 years ago
- vnodebypass using hidePath of jelbrekLib(Jakeashacks) and maphys (0x7ff) + special thanks to akusio☆67Updated 2 years ago
- Give me tfp0, I give you jelbrek☆262Updated 4 years ago
- Unstripped iOS kernel extensions and more. More coming soon.☆57Updated 4 years ago
- Aids in reverse engineering libraries from dyld_shared_cache in IDA☆101Updated 7 years ago
- ios iokit fuzzer (really probably isn't that useful anymore tbh)☆61Updated 7 years ago
- An iOS kernel debugger based on a KTRR bypass for A11 iPhones; works with LLDB and IDA Pro.☆54Updated 3 years ago
- An IDA Toolkit for analyzing iOS kernelcaches.☆103Updated last year
- IDA loader for Apple's 64 bits iBoot, SecureROM and AVPBooter☆138Updated 2 weeks ago
- ☆67Updated 2 years ago