nick-botticelli / XNU-syscall-hiding-PoC
PoC showing a method to hide syscalls on XNU (arm64 macOS and iOS) from static analysis
☆27Updated 2 years ago
Alternatives and similar repositories for XNU-syscall-hiding-PoC
Users that are interested in XNU-syscall-hiding-PoC are comparing it to the libraries listed below
Sorting:
- Naville's HikariObfuscator for LLVM 12. Under active development. Use with caution.☆56Updated 2 years ago
- A tracer based on frida for XPC messages in iOS and macOS.☆33Updated last year
- Search running processes on iOS for instances of a given objc class.☆49Updated 4 months ago
- ☆47Updated 4 years ago
- Cross Platform Hook Library based on Detours☆32Updated 7 months ago
- Arm64 inline hooking for iOS, Android, OSX, and Linux.☆64Updated 6 months ago
- KernInfra, a unified kernel operation framework☆54Updated 3 years ago
- ☆50Updated 4 months ago
- Traces syscalls on iOS via Frida, including Mach syscalls☆71Updated last year
- Frida's setHardwareWatchpoint tutorial☆43Updated 7 months ago
- My ongoing premier on reversing Swift☆81Updated 4 months ago
- Help us reverse ios more easily☆13Updated 4 months ago
- Getting better stacks and backtraces in Frida☆38Updated 10 months ago
- 详细说明及演示MMU相关原理及过程(用于理解Linux内核Root Kernelpatch)☆21Updated 11 months ago
- deobfuscation BR☆46Updated last year
- Use lief, keystone and capstone to manually inline hook elf(libil2cpp.so)☆31Updated 10 months ago
- iOS binary memory dump tool for iOS15+ (rootful, rootless)☆38Updated last year
- Android web based memory scanner & editor.☆18Updated last year
- capture ios device traffic without jailbreak / sip disable☆36Updated 3 years ago
- ☆31Updated 3 years ago
- Shortcut to automate your iproxy, debugserver, lldb workflow☆39Updated 6 months ago
- Title☆34Updated last year
- A Simple DLL Forward for Fucking IDA 9.0, which removed ida64.dll from beta3.☆13Updated 7 months ago
- Objective-C Trace Tools for iOS and macOS☆19Updated 5 years ago
- Frida在OC上的一些技巧☆33Updated 3 years ago
- arm64 and arm64e dylib injector☆31Updated last year
- An LLVM Pass from Hikari-LLVM15☆72Updated 3 months ago
- Dump process memory with FRIDA.☆16Updated last year
- Find JNI native methods while the app is running.☆20Updated 6 months ago
- iOS Easy Hooking Library☆26Updated 3 years ago