nick-botticelli / XNU-syscall-hiding-PoCLinks
PoC showing a method to hide syscalls on XNU (arm64 macOS and iOS) from static analysis
☆28Updated 2 years ago
Alternatives and similar repositories for XNU-syscall-hiding-PoC
Users that are interested in XNU-syscall-hiding-PoC are comparing it to the libraries listed below
Sorting:
- Traces syscalls on iOS via Frida, including Mach syscalls☆77Updated last year
- Cross Platform Hook Library based on Detours☆34Updated 11 months ago
- Naville's HikariObfuscator for LLVM 12. Under active development. Use with caution.☆57Updated 3 years ago
- ☆55Updated last week
- Arm64 inline hooking for iOS, Android, OSX, and Linux.☆70Updated 10 months ago
- ☆48Updated 4 years ago
- A tracer based on frida for XPC messages in iOS and macOS.☆34Updated 2 years ago
- A fork of Hikari's core obfuscation☆74Updated 4 years ago
- Search running processes on iOS for instances of a given objc class.☆53Updated 8 months ago
- KernInfra, a unified kernel operation framework☆58Updated 3 years ago
- My ongoing premier on reversing Swift☆103Updated last week
- A IDA plugin to show ARM MSRs nicely☆85Updated 2 years ago
- capture ios device traffic without jailbreak / sip disable☆38Updated 3 years ago
- Code to extracts stable ARM CPU register values directly from system hardware for fingerprinting device.☆27Updated last month
- arm64 and arm64e dylib injector☆36Updated last year
- Log all syscalls executed by a process (iOS / checkra1n / xnuspy)☆68Updated 3 years ago
- Tracing of iOS/macOS binaries using HW single step and Frida DBI☆83Updated 9 months ago
- Utilities to deploy frida on rootless iOS and more☆123Updated last year
- ☆33Updated 3 years ago
- Use lief, keystone and capstone to manually inline hook elf(libil2cpp.so)☆32Updated last year
- deobfuscation BR☆53Updated last year
- iOS binary memory dump tool for iOS15+ (rootful, rootless)☆42Updated last year
- anti ollvm like flat/bcf/sub☆73Updated 6 years ago
- iOS Easy Hooking Library☆26Updated 3 years ago
- Resume FuncOutline by idapython☆28Updated last year
- Help us reverse ios more easily☆16Updated 3 months ago
- Shortcut to automate your iproxy, debugserver, lldb workflow☆40Updated 10 months ago
- hook MachO file based on Dobby (NOT DONE)☆45Updated 5 years ago
- Mobile app memory view & edit PyQt6 program☆69Updated 4 months ago
- LLVM Obfuscation Pass☆22Updated 9 months ago