nick-botticelli / XNU-syscall-hiding-PoCLinks
PoC showing a method to hide syscalls on XNU (arm64 macOS and iOS) from static analysis
☆29Updated 2 years ago
Alternatives and similar repositories for XNU-syscall-hiding-PoC
Users that are interested in XNU-syscall-hiding-PoC are comparing it to the libraries listed below
Sorting:
- Traces syscalls on iOS via Frida, including Mach syscalls☆77Updated last year
- Arm64 inline hooking for iOS, Android, OSX, and Linux.☆70Updated 9 months ago
- Cross Platform Hook Library based on Detours☆32Updated 9 months ago
- Naville's HikariObfuscator for LLVM 12. Under active development. Use with caution.☆56Updated 2 years ago
- ☆52Updated 2 months ago
- ☆47Updated 4 years ago
- KernInfra, a unified kernel operation framework☆59Updated 3 years ago
- A fork of Hikari's core obfuscation☆74Updated 4 years ago
- A tracer based on frida for XPC messages in iOS and macOS.☆33Updated 2 years ago
- Search running processes on iOS for instances of a given objc class.☆51Updated 7 months ago
- Frida's setHardwareWatchpoint tutorial☆52Updated 9 months ago
- Help us reverse ios more easily☆14Updated 2 months ago
- My ongoing premier on reversing Swift☆95Updated last week
- A IDA plugin to show ARM MSRs nicely☆85Updated 2 years ago
- An Obfuscator for LLVM 19-20☆46Updated last month
- capture ios device traffic without jailbreak / sip disable☆38Updated 3 years ago
- hook MachO file based on Dobby (NOT DONE)☆45Updated 5 years ago
- Utilities to deploy frida on rootless iOS and more☆122Updated 10 months ago
- deobfuscation BR☆51Updated last year
- ☆32Updated 3 years ago
- An LLVM Pass from Hikari-LLVM15☆96Updated 6 months ago
- Code to extracts stable ARM CPU register values directly from system hardware for fingerprinting device.☆23Updated 2 weeks ago
- Frida在OC上的一些技巧☆33Updated 3 years ago
- Tracing of iOS/macOS binaries using HW single step and Frida DBI☆83Updated 8 months ago
- 🔥🔥🔥libhooker 基板开发 注入dylib iOS逆向工程开发 越狱Jailbreak deb插件 - fishhook / Frida / iOSOpenDev / Cycript / MachOView / IDA / Hopper Disassemble…☆22Updated 2 years ago
- Use lief, keystone and capstone to manually inline hook elf(libil2cpp.so)☆32Updated last year
- Log all syscalls executed by a process (iOS / checkra1n / xnuspy)☆65Updated 3 years ago
- Getting better stacks and backtraces in Frida☆50Updated last month
- iOS Easy Hooking Library☆26Updated 3 years ago
- Independent hikari☆28Updated 10 months ago