jsherman212 / svc_stalker
iOS system call/Mach trap interception for checkra1n'able devices
☆153Updated 3 years ago
Alternatives and similar repositories for svc_stalker:
Users that are interested in svc_stalker are comparing it to the libraries listed below
- iOS 10.0-12.2 tfp0☆129Updated 5 years ago
- Tool for getting and setting nonce without triggering KPP/KTRR/PAC.☆113Updated last year
- Log all syscalls executed by a process (iOS / checkra1n / xnuspy)☆62Updated 2 years ago
- call functions in a remote process using Mach API☆102Updated 11 months ago
- Lib kernel r/w☆192Updated 3 years ago
- iOS 12.0-13.3 tfp0☆151Updated 4 years ago
- ios iokit fuzzer (really probably isn't that useful anymore tbh)☆62Updated 7 years ago
- Spice - an unfinished iOS 11 untether☆113Updated 3 years ago
- A free runtime modification library.☆97Updated last year
- A arm offsetfinder. It finds offsets, patches, parses Mach-O and even supports IMG4/IMG3☆144Updated 4 months ago
- ☆67Updated 2 years ago
- Lockdown related research, tools and POCs.☆91Updated 5 years ago
- Unstripped iOS kernel extensions and more. More coming soon.☆56Updated 4 years ago
- Transform any ARM macho executable to a dynamic library☆75Updated 2 years ago
- tree but for Objective-C messages.☆118Updated last year
- untethered+unsandboxed code execution in iOS 11☆187Updated 4 years ago
- arm64 IOKit class dumper☆263Updated 3 weeks ago
- An iOS kernel debugger based on a KTRR bypass for A11 iPhones; works with LLDB and IDA Pro.☆55Updated 3 years ago
- iOS 15.0 - 15.3.1 sandbox escape technique using kernel read/write primitives☆121Updated 2 years ago
- Fork of PongoOS which can be run in QEMU☆63Updated 3 years ago
- iOS ARM64 kernel patchfinder☆74Updated 5 years ago
- 64-bit iOS boot image patcher written in C☆146Updated 2 years ago
- Unofficial fork from saurik git repository git://git.saurik.com/ldid.git☆53Updated 2 years ago
- Kernel-based method to take screenshots on iOS, works with encrypted videos.☆61Updated 3 years ago
- Give me tfp0, I give you jelbrek☆262Updated 4 years ago
- A free runtime modification library.☆98Updated 4 years ago
- classdump-c: Custom macOS / iOS / tvOS port updated to work on iOS 13-16+ supporting chained fixups, can also dump entitlements now as we…☆121Updated last year
- vnodebypass using hidePath of jelbrekLib(Jakeashacks) and maphys (0x7ff) + special thanks to akusio☆67Updated 2 years ago
- IDA loader for Apple's 64 bits iBoot, SecureROM and AVPBooter☆146Updated 2 months ago
- Securely extend the sandbox of system processes and user applications☆86Updated 5 months ago