kpwn / xnuexp-toolkitLinks
xnu exploitation toolkit
☆16Updated 9 years ago
Alternatives and similar repositories for xnuexp-toolkit
Users that are interested in xnuexp-toolkit are comparing it to the libraries listed below
Sorting:
- simple radare2 rap:// server☆25Updated 8 years ago
- Fun with iOS☆13Updated 11 years ago
- iOS Userland Forensic Dumping Framework for iOS 7/8☆20Updated 6 years ago
- crappy "debugger"-like memory reader, to inspect 32bit ios kernel after it paniced☆16Updated 6 years ago
- empty_list - exploit for p0 issue 1564 (CVE-2018-4243) iOS 11.0 - 11.3.1 kernel r/w☆19Updated 6 years ago
- Identifies common functions in iBSS/iBEC/iBoot/LLB☆32Updated 9 years ago
- Change your kernel version☆35Updated 6 years ago
- simple serial console suitable for use with serialsh and iBoot☆47Updated 5 years ago
- Reexport symbols for Mach-O and ELF☆38Updated 7 years ago
- A memctl core for jailbroken iOS devices.☆11Updated 7 years ago
- Small util to discover OS X sysent via bruteforce☆33Updated 8 years ago
- iOS10~iOS13 Edition) Dump Kext information from iOS kernel cache. Applicable to the kernel which dump from memory. The disassembly framew…☆21Updated 3 years ago
- not a jailbreak☆35Updated 7 years ago
- Dealing with Mach-O kexts, vtables and more☆85Updated 6 years ago
- macOS kext for host_special_port(4) patch☆88Updated last year
- iBoot64 Payload Development Toolkit☆42Updated 7 years ago
- mach based hooking library for OS X (and soon iOS). Still WIP☆18Updated 8 years ago
- Lightweight version of xpwntool just for decrypting IMG3 firmware files☆47Updated 4 years ago
- Binary Format of iOS 13 Sandbox Profile Collection☆51Updated 5 years ago
- task_for_pid injection that doesn't suck☆59Updated 9 years ago
- ART☆16Updated 7 years ago
- iOS Dropbear SSH☆44Updated 8 years ago
- This tool will help to fix the Mach-O header of iOS kernel which dump from the memory. So that IDA or function symbol-related tools can l…☆23Updated 8 years ago
- kernelcache encrypt/decrypt utility☆49Updated 13 years ago
- Get kernel symbols on device. No jailbreak required (note: unslid addresses)☆27Updated 6 years ago
- Radare2 plugin to parse modern iOS 64-bit kernel caches☆29Updated 6 years ago
- Research on Apple's USB protocols☆30Updated 5 years ago
- A simple tool to find offsets needed in 32bit jailbreaks. Feel free to contribute.☆30Updated 7 years ago
- Patches iOS kernel to allow access to all nvram variables☆48Updated 8 years ago
- GUI for kloader/multi_kloader in the spirit of old classic Setup.app☆27Updated 5 months ago