nick-botticelli / XNU-syscall-hiding-PoCLinks
PoC showing a method to hide syscalls on XNU (arm64 macOS and iOS) from static analysis
☆29Updated 2 years ago
Alternatives and similar repositories for XNU-syscall-hiding-PoC
Users that are interested in XNU-syscall-hiding-PoC are comparing it to the libraries listed below
Sorting:
- Cross Platform Hook Library based on Detours☆32Updated 9 months ago
- ☆47Updated 4 years ago
- Naville's HikariObfuscator for LLVM 12. Under active development. Use with caution.☆56Updated 2 years ago
- KernInfra, a unified kernel operation framework☆55Updated 3 years ago
- A tracer based on frida for XPC messages in iOS and macOS.☆33Updated 2 years ago
- ☆52Updated last month
- Search running processes on iOS for instances of a given objc class.☆51Updated 6 months ago
- Arm64 inline hooking for iOS, Android, OSX, and Linux.☆68Updated 8 months ago
- Traces syscalls on iOS via Frida, including Mach syscalls☆76Updated last year
- My ongoing premier on reversing Swift☆87Updated 6 months ago
- capture ios device traffic without jailbreak / sip disable☆37Updated 3 years ago
- Frida's setHardwareWatchpoint tutorial☆52Updated 9 months ago
- Help us reverse ios more easily☆14Updated last month
- arm64 and arm64e dylib injector☆36Updated last year
- An Obfuscator for LLVM 19-20☆41Updated 2 weeks ago
- iOS binary memory dump tool for iOS15+ (rootful, rootless)☆40Updated last year
- A IDA plugin to show ARM MSRs nicely☆84Updated 2 years ago
- Use lief, keystone and capstone to manually inline hook elf(libil2cpp.so)☆31Updated last year
- A fork of Hikari's core obfuscation☆72Updated 4 years ago
- Updated IDA ReObjc Plugin for 7.4+ and python3☆13Updated 4 years ago
- Find JNI native methods while the app is running.☆21Updated 8 months ago
- hook MachO file based on Dobby (NOT DONE)☆45Updated 5 years ago
- Shortcut to automate your iproxy, debugserver, lldb workflow☆39Updated 8 months ago
- ☆31Updated 3 years ago
- Mobile app memory view & edit PyQt6 program☆64Updated 2 months ago
- Frida module to continue stalking on pthread_create☆20Updated 5 years ago
- Tracing of iOS/macOS binaries using HW single step and Frida DBI☆81Updated 7 months ago
- Utilities to deploy frida on rootless iOS and more☆123Updated 10 months ago
- Log all syscalls executed by a process (iOS / checkra1n / xnuspy)☆65Updated 3 years ago
- An IDA Pro plugin to allow use of Python venvs☆16Updated 9 months ago