markie-dev / desc_race_A15
CVE-2021-30955 iOS 15.1.1 POC for 6GB RAM devices (A14-A15)
☆48Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for desc_race_A15
- iOS15.0-15.1 arm64e only☆49Updated 2 years ago
- ☆67Updated 2 years ago
- Kernel-based method to take screenshots on iOS, works with encrypted videos.☆61Updated 3 years ago
- Automated analysis of iOS jailbreak tweaks☆53Updated 3 months ago
- iOS firmware key decrypter☆45Updated last year
- JB ETA????☆29Updated 3 years ago
- Interact with trustcaches☆39Updated last year
- Log all syscalls executed by a process (iOS / checkra1n / xnuspy)☆58Updated 2 years ago
- Find some iBoot functions in an iBoot64.☆41Updated 3 years ago
- Extract iOS firmware keys using on-device AES engine☆28Updated 2 years ago
- Securely extend the sandbox of system processes and user applications☆84Updated 3 months ago
- WIP iOS 11 - 12.2 & 13b1,b2 Safari Jailbreak☆43Updated 4 years ago
- 32/64 bit SecureROM/iBoot loader for IDA Pro. Also supports loading and decrypting encrypted .im4ps within IDA.☆68Updated 2 years ago
- A custom shellcode hook for checkra1n 0.1337 written in c!☆37Updated 11 months ago
- Base Binaries for libhooker☆23Updated 6 months ago
- iOS system call/Mach trap interception for checkra1n'able devices☆150Updated 3 years ago
- Tool for getting and setting nonce without triggering KPP/KTRR/PAC.☆109Updated last year
- ☆47Updated 3 years ago
- An open source implemention of Apple's `launchctl(1)`☆69Updated 3 months ago
- A simple library to log all objc_msgSend calls☆17Updated 4 years ago
- File detection bypass for iOS☆19Updated 3 years ago
- seprmvr64, downgrade& jailbreak utility☆16Updated 5 months ago
- Patchfinder and rebinder for objc_direct methods☆51Updated 6 months ago
- An iOS developer framework for unified hooking methods.☆39Updated last year
- Private header dump from dyld cache, might be somewhat incomplete.☆34Updated 4 years ago
- Transform any ARM macho executable to a dynamic library☆41Updated 2 years ago
- iOS 15.0 - 15.3.1 sandbox escape technique using kernel read/write primitives☆123Updated 2 years ago
- a patcher for making downgradable iOS 14 firmware☆37Updated 2 years ago
- experimental iOS debugger☆25Updated 4 years ago
- An iOS kernel debugger based on a KTRR bypass for A11 iPhones; works with LLDB and IDA Pro.☆54Updated 3 years ago