markie-dev / desc_race_A15Links
CVE-2021-30955 iOS 15.1.1 POC for 6GB RAM devices (A14-A15)
☆48Updated 3 years ago
Alternatives and similar repositories for desc_race_A15
Users that are interested in desc_race_A15 are comparing it to the libraries listed below
Sorting:
- Kernel-based method to take screenshots on iOS, works with encrypted videos.☆60Updated 4 years ago
- Search running processes on iOS for instances of a given objc class.☆54Updated 11 months ago
- ☆67Updated 3 years ago
- iOS firmware key decrypter☆45Updated 2 years ago
- Interact with trustcaches☆41Updated 2 years ago
- toy project for tracing objc_msgSend☆57Updated 4 months ago
- Private headers & entitlements for daemons, frameworks, applications private frameworks and more for iOS 17.0 21A328☆24Updated 2 years ago
- Slightly improved exploit of the CVE-2025-24203 iOS vulnerability by Ian Beer of Google Project Zero☆39Updated last month
- ☆21Updated 2 years ago
- JB ETA????☆28Updated 4 years ago
- A custom shellcode hook for checkra1n 0.1337 written in c!☆35Updated 2 years ago
- ☆49Updated 4 years ago
- A arm offsetfinder. It finds offsets, patches, parses Mach-O and even supports IMG4/IMG3☆149Updated 6 months ago
- Extract iOS firmware keys using on-device AES engine☆40Updated 3 years ago
- 32/64 bit SecureROM/iBoot loader for IDA Pro. Also supports loading and decrypting encrypted .im4ps within IDA.☆73Updated 3 years ago
- iOS 15.0 - 15.3.1 sandbox escape technique using kernel read/write primitives☆132Updated 3 years ago
- iOS system call/Mach trap interception for checkra1n'able devices☆159Updated 4 years ago
- Log all syscalls executed by a process (iOS / checkra1n / xnuspy)☆71Updated 3 years ago
- Lightweight *OS hooking library with no dependencies except for libsystem☆99Updated 2 months ago
- IDA plugin that exports pseudocode of objective-c classes into separate .m files☆28Updated 10 months ago
- A tool to call CoreTrust evaluation from userland☆20Updated last year
- Tool for getting and setting nonce without triggering KPP/KTRR/PAC.☆114Updated 2 years ago
- Transform any ARM macho executable to a dynamic library☆43Updated 9 months ago
- Easily download the kernelcache for any iOS release, beta or OTA-only version.☆19Updated 6 months ago
- experimental iOS debugger☆31Updated 5 years ago
- Auto updated libimobiledevice Github Actions package☆13Updated last week
- File detection bypass for iOS☆19Updated 4 years ago
- Corellium Companion Toolkit☆20Updated last year
- Transform any ARM macho executable to a dynamic library☆77Updated 3 years ago
- Mapping physical memory to user space (EL0) on iOS.☆75Updated 2 years ago