jsherman212 / svc_stalker
iOS system call/Mach trap interception for checkra1n'able devices
☆148Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for svc_stalker
- iOS 10.0-12.2 tfp0☆128Updated 5 years ago
- Lib kernel r/w☆191Updated 3 years ago
- Tool for getting and setting nonce without triggering KPP/KTRR/PAC.☆109Updated last year
- A arm offsetfinder. It finds offsets, patches, parses Mach-O and even supports IMG4/IMG3☆143Updated 2 months ago
- call functions in a remote process using Mach API☆100Updated 9 months ago
- Log all syscalls executed by a process (iOS / checkra1n / xnuspy)☆58Updated 2 years ago
- Spice - an unfinished iOS 11 untether☆113Updated 3 years ago
- iOS 12.0-13.3 tfp0☆151Updated 3 years ago
- untethered+unsandboxed code execution in iOS 11☆189Updated 4 years ago
- arm64 IOKit class dumper☆260Updated last week
- Checkm8 PoC tool for A8, A8X and A9 devices that allows you to boot untrusted images (macOS only, credits: checkra1n team).☆86Updated 3 years ago
- A free runtime modification library.☆95Updated last year
- ☆67Updated 2 years ago
- 64-bit iOS boot image patcher written in C☆147Updated 2 years ago
- tree but for Objective-C messages.☆115Updated 10 months ago
- CVE-2021-30955 iOS 15.1.1 POC for 6GB RAM devices (A14-A15)☆48Updated 2 years ago
- iOS ARM64 kernel patchfinder☆74Updated 5 years ago
- Kernel-based method to take screenshots on iOS, works with encrypted videos.☆61Updated 3 years ago
- A free runtime modification library.☆99Updated 4 years ago
- Transform any ARM macho executable to a dynamic library☆75Updated 2 years ago
- vnodebypass using hidePath of jelbrekLib(Jakeashacks) and maphys (0x7ff) + special thanks to akusio☆67Updated 2 years ago
- iOS 15.0 - 15.3.1 sandbox escape technique using kernel read/write primitives☆123Updated 2 years ago
- ios iokit fuzzer (really probably isn't that useful anymore tbh)☆60Updated 7 years ago
- Analyzes a binary iOS kernel to determine function offsets and where to apply the canonical jailbreak patches.☆65Updated 7 years ago
- classdump-c: Custom macOS / iOS / tvOS port updated to work on iOS 13-16+ supporting chained fixups, can also dump entitlements now as we…☆116Updated last year
- A command-line tool to create Text-Based Application Programming Interface (TAPI) files from existing binaries☆120Updated 4 months ago
- iOS Kernel Decompressor☆85Updated 4 years ago
- Give me tfp0, I give you jelbrek☆262Updated 4 years ago
- Lockdown related research, tools and POCs.☆91Updated 5 years ago
- Fork of PongoOS which can be run in QEMU☆63Updated 3 years ago