nick-botticelli / XNU-syscall-hiding-PoCLinks
PoC showing a method to hide syscalls on XNU (arm64 macOS and iOS) from static analysis
☆28Updated 3 years ago
Alternatives and similar repositories for XNU-syscall-hiding-PoC
Users that are interested in XNU-syscall-hiding-PoC are comparing it to the libraries listed below
Sorting:
- Traces syscalls on iOS via Frida, including Mach syscalls.☆79Updated 2 weeks ago
- Arm64 inline hooking for iOS, Android, OSX, and Linux.☆70Updated 11 months ago
- Naville's HikariObfuscator for LLVM 12. Under active development. Use with caution.☆55Updated 3 years ago
- A tracer based on frida for XPC messages in iOS and macOS.☆34Updated 2 years ago
- ☆49Updated 4 years ago
- ☆58Updated last month
- KernInfra, a unified kernel operation framework☆57Updated 3 years ago
- Cross Platform Hook Library based on Detours☆34Updated 11 months ago
- My ongoing premier on reversing Swift☆103Updated last month
- A fork of Hikari's core obfuscation☆72Updated 4 years ago
- iOS binary memory dump tool for iOS15+ (rootful, rootless)☆42Updated last year
- Search running processes on iOS for instances of a given objc class.☆53Updated 9 months ago
- Code to extracts stable ARM CPU register values directly from system hardware for fingerprinting device.☆27Updated 2 months ago
- iOS Easy Hooking Library☆26Updated 3 years ago
- Help us reverse ios more easily☆18Updated 4 months ago
- Utilities to deploy frida on rootless iOS and more☆123Updated last year
- Log all syscalls executed by a process (iOS / checkra1n / xnuspy)☆68Updated 3 years ago
- 🔥🔥🔥libhooker 基板开发 注入dylib iOS逆向工程开发 越狱Jailbreak deb插件 - fishhook / Frida / iOSOpenDev / Cycript / MachOView / IDA / Hopper Disassemble…☆23Updated 3 years ago
- Resume FuncOutline by idapython☆27Updated last year
- capture ios device traffic without jailbreak / sip disable☆38Updated 3 years ago
- Frida module to continue stalking on pthread_create☆20Updated 5 years ago
- iOS的越狱和非越狱环境下直接对指定地址函数进行hook的框架,支持宏定义直接切换☆33Updated 4 months ago
- hook MachO file based on Dobby (NOT DONE)☆45Updated 5 years ago
- Use lief, keystone and capstone to manually inline hook elf(libil2cpp.so)☆31Updated last year
- A IDA plugin to show ARM MSRs nicely☆85Updated 2 years ago
- ☆31Updated 3 years ago
- Objective-C Trace Tools for iOS and macOS☆19Updated 5 years ago
- shell, python, Frida js scripts, and so on.☆19Updated 2 years ago
- Frida's setHardwareWatchpoint tutorial☆58Updated 11 months ago
- iOS地铁跑酷菜单。支持越狱/非越狱环境,自带static inline hook☆19Updated 4 months ago