nick-botticelli / vma2pwnLinks
Scripts + patches to pwn vma2 (Virtualization.framework) macOS virtual machines
☆58Updated last year
Alternatives and similar repositories for vma2pwn
Users that are interested in vma2pwn are comparing it to the libraries listed below
Sorting:
- tart, but with custom AVPBooter ROM, serial I/O, DFU mode, GDB debugging (port 8000), and panic halting. See help menus for `tart create`…☆47Updated last year
- Guessed headers of non-public Apple SDK☆46Updated this week
- Apple Silicon NOR dumper☆48Updated last year
- CLI frontend for com.apple.decmpfs / AppleFSCompression.framework☆32Updated 2 years ago
- Translate and patch arm64e binaries or macOS arm64 binaries to run on an arm64 iPhone at runtime.☆58Updated 3 years ago
- Set of tools to interact with various aspects of Kanzi probe and its derivatives☆47Updated 11 months ago
- Ghidra CI/CD to build and host a universal macOS Ghidra.app☆40Updated this week
- A tool to parse Apple's binary device tree format.☆56Updated 5 years ago
- An open source implemention of Apple's `launchctl(1)`☆82Updated 7 months ago
- Another Virtualization.framework demo project, with focus to iBoot (WIP)☆172Updated last year
- Cross-compat library for parsing Apple Archive + Apple Encrypted Archive (.aar/.yaa/.aea).☆31Updated last month
- Insecurity as an IOService☆91Updated 4 months ago
- Interact with trustcaches☆42Updated 2 years ago
- Transform any ARM macho executable to a dynamic library☆42Updated 4 months ago
- Standalone SSH and CLI tools cryptex for the Apple SRD☆16Updated last year
- Decompiling macOS Hypervisor.framework by hand☆127Updated 2 years ago
- Patch the iBoot64 with generic patches.☆53Updated last year
- macOS Sandbox Profile Language (SBPL) Interpreter☆54Updated 5 years ago
- AEA metadata dumper☆46Updated 2 months ago
- When dlsym isn't enough☆18Updated last year
- Boot arbitrary iBoot via ipwndfu's custom protocol on some cursed platforms and more☆57Updated 6 months ago
- An Apple Silicon hooking library written in C☆15Updated 3 years ago
- capture ios device traffic without jailbreak / sip disable☆38Updated 3 years ago
- Transform any ARM macho executable to a dynamic library☆79Updated 2 years ago
- Grant private entitlements to OSX apps☆109Updated 4 years ago
- A working busybox for iOS and macOS☆33Updated 2 years ago
- App sandbox escapes for macOS☆31Updated 5 years ago
- XPC sniffer using LLDB☆46Updated 10 months ago
- A library that enables dynamically rebinding symbols in Mach-O binaries running on Apple platforms☆34Updated 10 months ago
- Failed experiment for running command line macOS tools on jailbroken iOS. There's nothing useful here.☆41Updated 4 years ago